Visible to the public Security-Related Commits in Open Source Web Browser Projects

TitleSecurity-Related Commits in Open Source Web Browser Projects
Publication TypeConference Paper
Year of Publication2019
AuthorsKiss, Ákos, Hodován, Renáta
Conference Name2019 34th IEEE/ACM International Conference on Automated Software Engineering Workshop (ASEW)
Date PublishedNov. 2019
PublisherIEEE
ISBN Number978-1-7281-4136-7
Keywordsbrowser, commits, composability, compositionality, Human Behavior, human factors, Metrics, pubcrawl, resilience, Resiliency, security, web, Web Browser Security
Abstract

The security of web browsers is of paramount importance, these days perhaps more than ever. Unfortunately, acquiring real data for security-related research is not an easy task, as access to sensitive information is rarely granted to researchers who are not members of a trusted security team. In this paper, we describe a method to mine security-related commits from open source software repositories, even if the reports of already fixed security issues have access restrictions, and we show the applicability of the method on two popular web browser projects. We also made the mined dataset available, listing more than 13,000 security-related commits, with which we hope to facilitate research on security-targeted bug prediction.

URLhttps://ieeexplore.ieee.org/document/8967429
DOI10.1109/ASEW.2019.00029
Citation Keykiss_security-related_2019