A systematic survey of just-in-time software defect prediction

Y Zhao, K Damevski, H Chen - ACM Computing Surveys, 2023 - dl.acm.org
Recent years have experienced sustained focus in research on software defect prediction
that aims to predict the likelihood of software defects. Moreover, with the increased interest …

[HTML][HTML] Just-in-time software vulnerability detection: Are we there yet?

F Lomio, E Iannone, A De Lucia, F Palomba… - Journal of Systems and …, 2022 - Elsevier
Background: Software vulnerabilities are weaknesses in source code that might be exploited
to cause harm or loss. Previous work has proposed a number of automated machine …

Deepcva: Automated commit-level vulnerability assessment with deep multi-task learning

THM Le, D Hin, R Croft… - 2021 36th IEEE/ACM …, 2021 - ieeexplore.ieee.org
It is increasingly suggested to identify Software Vulnerabilities (SVs) in code commits to give
early warnings about potential security risks. However, there is a lack of effort to assess …

The secret life of software vulnerabilities: A large-scale empirical study

E Iannone, R Guadagni, F Ferrucci… - IEEE Transactions …, 2022 - ieeexplore.ieee.org
Software vulnerabilities are weaknesses in source code that can be potentially exploited to
cause loss or harm. While researchers have been devising a number of methods to deal …

An exploratory study on confusion in code reviews

F Ebert, F Castor, N Novielli, A Serebrenik - Empirical Software …, 2021 - Springer
Context Code review is a widely used technique of systematic examination of code changes
which aims at increasing software quality. Code reviews provide several benefits for the …

The case for adaptive security interventions

I Rauf, M Petre, T Tun, T Lopez, P Lunn… - ACM Transactions on …, 2021 - dl.acm.org
Despite the availability of various methods and tools to facilitate secure coding, developers
continue to write code that contains common vulnerabilities. It is important to understand …

Costing secure software development: A systematic mapping study

E Venson, X Guo, Z Yan, B Boehm - Proceedings of the 14th …, 2019 - dl.acm.org
Building more secure software is a recent concern for software engineers due to increasing
incidences of data breaches and other types of cyber attacks. However, software security …

Code-centric learning-based just-in-time vulnerability detection

S Nguyen, TT Nguyen, TT Vu, TD Do, KT Ngo… - Journal of Systems and …, 2024 - Elsevier
Attacks against computer systems exploiting software vulnerabilities can cause substantial
damage to the cyber infrastructure of our modern society and economy. To minimize the …

An empirical study of developers' discussions about security challenges of different programming languages

R Croft, Y Xie, M Zahedi, MA Babar… - Empirical Software …, 2022 - Springer
Given programming languages can provide different types and levels of security support, it is
critically important to consider security aspects while selecting programming languages for …

A survey on automated software vulnerability detection using machine learning and deep learning

NS Harzevili, AB Belle, J Wang, S Wang, Z Ming… - arXiv preprint arXiv …, 2023 - arxiv.org
Software vulnerability detection is critical in software security because it identifies potential
bugs in software systems, enabling immediate remediation and mitigation measures to be …