PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
October 27, 2008130 citations

Is complexity really the enemy of software security?

View Full Paper
YSYonghee ShinLWLaurie Williams

Key Points

Key points are not available for this paper at this time.

Abstract

Software complexity is often hypothesized to be the enemy of software security. We performed statistical analysis on nine code complexity metrics from the JavaScript Engine in the Mozilla application framework to investigate if this hypothesis is true. Our initial results show that the nine complexity measures have weak correlation (ρ=0.30 at best) with security problems for Mozilla JavaScript Engine. The study should be replicated on more products with design and code-level metrics. It may be necessary to create new complexity metrics to embody the type of complexity that leads to security problems.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Shin et al. (2008) studied this question.

synapsesocial.com/papers/6a1ddcb78b32c80b54602919https://doi.org/10.1145/1456362.1456372
Ask AI
Helpful
Bookmark
Share
View Full Paper