2022
DOI: 10.1109/tse.2020.2981317
|View full text |Cite
|
Sign up to set email alerts
|

The Impact of Surface Features on Choice of (in)Secure Answers by Stackoverflow Readers

Abstract: Existing research has shown that developers will use StackOverflow to answer programming questions: but what draws them to one particular answer over any other? The choice of answer they select can mean the difference between a secure application and insecure one, as the quality of supposedly secure answers can vary. Prior work has studied people posting on Stack Overflow-a two-way communication between the original poster and the Stack Overflow community. Instead, we study the situation of one-way communicati… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
9
0

Year Published

2022
2022
2023
2023

Publication Types

Select...
4
2

Relationship

1
5

Authors

Journals

citations
Cited by 10 publications
(11 citation statements)
references
References 48 publications
(122 reference statements)
0
9
0
Order By: Relevance
“…If a developer struggles to understand how to use an API correctly (the miscommunication challenge in Table I), they may search Stack Overflow for solutions. The answers to Stack Overflow questions are voted and this may create herding behaviors (Table II), regardless of whether the answer they follow is correct or not [42]. The intangibility challenge represents a challenge with security as a whole, rather than being specific to any particular development practice.…”
Section: Challenges and Consequent Behaviorsmentioning
confidence: 99%
See 3 more Smart Citations
“…If a developer struggles to understand how to use an API correctly (the miscommunication challenge in Table I), they may search Stack Overflow for solutions. The answers to Stack Overflow questions are voted and this may create herding behaviors (Table II), regardless of whether the answer they follow is correct or not [42]. The intangibility challenge represents a challenge with security as a whole, rather than being specific to any particular development practice.…”
Section: Challenges and Consequent Behaviorsmentioning
confidence: 99%
“…Van der Linden et al conduct an observation of developer's use of Stack Overflow with 1,188 participants. They found developers go by surface features of Stack Overflow posts (such as answer length) over correctness [42]. Hidden information has a bearing on our characterization of shifting responsibility.…”
Section: Mental Models Shifting Responsibilitymentioning
confidence: 99%
See 2 more Smart Citations
“…For instance, profiling developer expertise contributes to heightening the members' awareness about the reliability of responses [5] [6]. In particular, platforms such as Stack Overflow contain insecure code snippets and inexperienced developers blindly use such snippets [7]. Due to the lack of secure code examples in cryptography, we hypothesize that mapping the activity of top crypto developers cross-platform can provide an interesting path to find and evaluate their practices from the security perspective, and present such results for developers who are looking for reliable, secure crypto examples.…”
Section: Introductionmentioning
confidence: 99%