• Home
  • Search
  • Redacting sensitive information in software artifacts
  • Open Access IconOpen Access
  • Cite Icon14
  • https://doi.org/10.1145/2597008.2597138Copy DOI Icon

Redacting sensitive information in software artifacts

  • Jun 2, 2014
  • Mark Grechanik +4 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

In the past decade, there have been many well-publicized cases of source code leaking from different well-known companies. These leaks pose a serious problem when the source code contains sensitive information encoded in its identifier names and comments. Unfortunately, redacting the sensitive information requires obfuscating the identifiers, which will quickly interfere with program comprehension. Program comprehension is key for programmers in understanding the source code, so sensitive information is often left unredacted. To address this problem, we offer a novel approach for REdacting Sensitive Information in Software arTifacts (RESIST). RESIST finds and replaces sensitive words in software artifacts in such a way to reduce the impact on program comprehension. We evaluated RESIST experimentally using 57 professional programmers from over a dozen different organizations. Our evaluation shows that RESIST effectively redacts software artifacts, thereby making it difficult for participants to infer sensitive information, while maintaining a desired level of comprehension.

Similar Papers
  • Conference Article
  • Citations12

Normalizing source code vocabulary to support program comprehension and software quality

  • May 18, 2013
  • Latifa Guerrouj
  • Research Article
  • Citations1

Special issue on program comprehension

  • Jul 26, 2014
  • Empirical Software Engineering
  • Michael W Godfrey +1
  • Research Article
  • Citations47

Labeling source code with information retrieval methods: an empirical study

  • Nov 13, 2013
  • Empirical Software Engineering
  • Andrea De Lucia +4
  • Conference Article
  • Citations29

Effects of explicit feature traceability on program comprehension

  • Aug 12, 2019
  • Jacob Krüger +4
  • Conference Article
  • Citations25

Tool support for traceability management of software artefacts with DevOps practices

  • May 01, 2017
  • S Palihawadana +5
  • Conference Article
  • Citations16

Text to software

  • Nov 07, 2010
  • Walter F Tichy +1
  • Research Article

A comparison of programmers' opinions in change impact analysis

  • Jan 01, 2010
  • Periodica Polytechnica Electrical Engineering
  • Gabriella Tóth
  • Conference Article
  • Citations7

Ontology-based Program Comprehension Tool Supporting Website Architectural Evolution

  • Sep 01, 2006
  • Yonggang Zhang +3
  • Research Article
  • Citations78

A Look into Programmers’ Heads

  • Apr 01, 2020
  • IEEE Transactions on Software Engineering
  • Norman Peitek +8
  • Conference Article
  • Citations4

The effects of identifier retention and stop word removal on a latent Dirichlet allocation based feature location technique

  • Mar 29, 2012
  • Lauren R Biggers
  • Conference Article

Toward automatic artifact matching for tool evaluation

  • Mar 19, 2009
  • Yan Liang
  • PDF
  • Research Article
  • Citations28

Combining Machine Learning and Logical Reasoning to Improve Requirements Traceability Recovery

  • Oct 16, 2020
  • Applied Sciences
  • Tong Li +3
  • Research Article

设计模式指导的软件分簇方法

  • Jan 01, 2014
  • SCIENTIA SINICA Informationis
  • Linzhang Wang +5
  • Conference Article
  • Citations128

Easing Program Comprehension by Sharing Navigation Data

  • Sep 01, 2005
  • R Deline +2
  • Conference Article
  • Citations2

COSPEX: A Program Comprehension Tool for Novice Programmers

  • May 01, 2022
  • Nakshatra Gupta +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.