A Taxonomy of Functional Security Features and How They Can Be Located - Replication Package
收藏资源简介:
EMSE - Replication Package This replication package contains the supplementary material for our article "A Taxonomy of Functional Security Features and How They Can Be Located", published in Empirical Software Engineering in 2025. This study has been designed, conducted, and reported by the following investigators: - [Kevin Hermann](https://se.ruhr-uni-bochum.de/kevin-hermann/) (Ruhr University Bochum)- Simon Schneider (Hamburg University of Technology)- Catherine Tony (Hamburg University of Technology)- [Asli Yardim](https://informatik.rub.de/dcs/personen/yardim/) (Ruhr University Bochum)- [Sven Peldszus](https://sven.peldszus.com/) (Ruhr University Bochum)- [Thorsten Berger](https://se.ruhr-uni-bochum.de/thorsten-berger/) (Ruhr University Bochum, University of Gothenburg, and Chalmers University of Technology)- [Riccardo Scandariato](https://scandariato.org/) (Hamburg University of Technology)- [M. Angela Sasse](https://informatik.rub.de/sasse/) (Ruhr University Bochum)- [Alena Naiakshina](https://informatik.rub.de/naiakshina/) (Ruhr University Bochum) Any of the investigators listed above can be contacted for more information. The data supporting the conducted systematic review of the literature, standards, and security frameworks are available below. How to cite this workIf this work or the dataset is helping your research and you use it in a publication, please cite it is as follows. Thank you! ```@article{EMSE2025_SecurityFeatures, title = {{A Taxonomy of Functional Security Features and How They Can Be Located}}, journal = {Empirical Software Engineering (EMSE)}, year = {2025}, author = {Kevin Hermann and Simon Schneider and Catherine Tony and Asli Yardim and Sven Peldszus and Thorsten Berger and Riccardo Scandariato and Martina Angela Sasse and Alena Naiakshina}}``` Overview of the replication packageThis replication package is structured as follows:``` / . |--- 1) Systematic Review - Literature.xlsx Data related to the systematic review of the literature. |--- 2) Systematic Review - Security Standards.xlsx Data related to the systematic review of the security standards. |--- 3) Systematic Review - Security Frameworks.xlsx Data related to the systematic review of the security frameworks extracted from Stack Overflow and Reddit.``` Please find detailed information about the individual files below. 1) Systematic Review - Literature.xlsx The file "1) Systematic Review - Literature.xlsx" contains the papers that we considered in our literature review. The decisions for in- or exclusion are given for each phase of the review. 2) Systematic Review - Security Standards.xlsx The file "2) Systematic Review - Security Standards.xlsx" comprises the review of the security standards with the mapping to the taxonomy from our paper. Each sheet contains the mapping for one security standard. 3) Systematic Review - Security Frameworks.xlsx The file "Systematic Review - Security Frameworks.xlsx" contains 4 sheets. (Sheet "Stack Overflow Threads") contains the list of Stack Overflow threads considered for our review. For each thread, we list the extracted security frameworks, as well as other frameworks that were mentioned in the thread. (Sheet "Reddit Threads") contains the list of Reddit threads considered for our review. Similarly to the Stack Overflow threads, we list the extracted security frameworks, as well as other frameworks that were mentioned in the thread for each thread. (Sheet "Found Frameworks") contains a list of security frameworks extracted from Stack Overflow and Reddit. We list the occurences for both platforms. We considered security frameworks with at least 2 total occurences for further review. (Sheet "Security Features") contains a list of security features extracted from each security framework, as well as a reference to the corresponding documentation.



