Technical debt as an indicator of software security risk: a machine learning approach for software development enterprises

ENTERPRISE INFORMATION SYSTEMS(2022)

引用 18|浏览23
暂无评分
摘要
Vulnerability prediction facilitates the development of secure software, as it enables the identification and mitigation of security risks early enough in the software development lifecycle. Although several factors have been studied for their ability to indicate software security risk, very limited attention has been given to technical debt (TD), despite its potential relevance to software security. To this end, in the present study, we investigate the ability of common TD indicators to indicate security risks in software products, both at project-level and at class-level of granularity. Our findings suggest that TD indicators may potentially act as security indicators as well.
更多
查看译文
关键词
Software engineering, technical debt, software security, vulnerability prediction, decision making
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要