Utilize este identificador para referenciar este registo: http://hdl.handle.net/10071/27230
Registo completo
Campo DCValorIdioma
dc.contributor.authorGasiba, T. E.-
dc.contributor.authorHodzic, S.-
dc.contributor.authorLechner, U.-
dc.contributor.authorPinto-Albuquerque, M.-
dc.date.accessioned2023-01-14T23:05:27Z-
dc.date.available2023-01-14T23:05:27Z-
dc.date.issued2021-
dc.identifier.citationGasiba, T. E., Hodzic, S., Lechner, U., & Pinto-Albuquerque, M. (2021). Raising security awareness using cybersecurity challenges in embedded programming courses. 2021 International Conference on Code Quality (ICCQ) (pp. 79-92). IEEE. https://dx.doi.org/10.1109/ICCQ51190.2021.9392965-
dc.identifier.isbn978-1-7281-8476-0-
dc.identifier.urihttp://hdl.handle.net/10071/27230-
dc.description.abstractSecurity bugs are errors in code that, when exploited, can lead to serious software vulnerabilities. These bugs could allow an attacker to take over an application and steal information. One of the ways to address this issue is by means of awareness training. The Sifu platform was developed in the industry, for the industry, with the aim to raise software developers' awareness of secure coding. This paper extends the Sifu platform with three challenges that specifically address embedded programming courses, and describes how to implement these challenges, while also evaluating the usefulness of these challenges to raise security awareness in an academic setting. Our work presents technical details on the detection mechanisms for software vulnerabilities and gives practical advice on how to implement them. The evaluation of the challenges is performed through two trial runs with a total of 16 participants. Our preliminary results show that the challenges are suitable for academia, and can even potentially be included in official teaching curricula. One major finding is an indicator of the lack of awareness of secure coding by undergraduates. Finally, we compare our results with previous work done in the industry and extract advice for practitioners.eng
dc.language.isoeng-
dc.publisherIEEE-
dc.relationinfo:eu-repo/grantAgreement/FCT/6817 - DCRRNI ID/UIDB%2F04466%2F2020/PT-
dc.relationinfo:eu-repo/grantAgreement/FCT/6817 - DCRRNI ID/UIDP%2F04466%2F2020/PT-
dc.relation.ispartof2021 International Conference on Code Quality (ICCQ)-
dc.rightsopenAccess-
dc.subjectSecure codingeng
dc.subjectSoftware qualityeng
dc.subjectEmbedded programmingeng
dc.subjectTrainingeng
dc.subjectCybersecurity challengeeng
dc.subjectEducationeng
dc.subjectSecurity bugeng
dc.titleRaising security awareness using cybersecurity challenges in embedded programming courseseng
dc.typeconferenceObject-
dc.event.title1st International Conference on Code Quality, ICCQ 2021-
dc.event.typeConferênciapt
dc.event.locationMoscoweng
dc.event.date2021-
dc.pagination79 - 92-
dc.peerreviewedyes-
dc.date.updated2023-01-14T23:04:23Z-
dc.description.versioninfo:eu-repo/semantics/acceptedVersion-
dc.identifier.doi10.1109/ICCQ51190.2021.9392965-
iscte.identifier.cienciahttps://ciencia.iscte-iul.pt/id/ci-pub-82963-
iscte.alternateIdentifiers.scopus2-s2.0-85104649958-
Aparece nas coleções:ISTAR-CRI - Comunicações a conferências internacionais

Ficheiros deste registo:
Ficheiro TamanhoFormato 
conferenceObject_82963.pdf1,24 MBAdobe PDFVer/Abrir


FacebookTwitterDeliciousLinkedInDiggGoogle BookmarksMySpaceOrkut
Formato BibTex mendeley Endnote Logotipo do DeGóis Logotipo do Orcid 

Todos os registos no repositório estão protegidos por leis de copyright, com todos os direitos reservados.