{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,26]],"date-time":"2026-03-26T15:48:43Z","timestamp":1774540123949,"version":"3.50.1"},"publisher-location":"Cham","reference-count":20,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031541285","type":"print"},{"value":"9783031541292","type":"electronic"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-54129-2_25","type":"book-chapter","created":{"date-parts":[[2024,3,11]],"date-time":"2024-03-11T22:03:15Z","timestamp":1710194595000},"page":"426-441","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["FedREVAN: Real-time DEtection of\u00a0Vulnerable Android Source Code Through Federated Neural Network with\u00a0XAI"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-2278-8671","authenticated-orcid":false,"given":"Janaka","family":"Senanayake","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6430-9558","authenticated-orcid":false,"given":"Harsha","family":"Kalutarage","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0987-2791","authenticated-orcid":false,"given":"Andrei","family":"Petrovski","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1146-1860","authenticated-orcid":false,"given":"Mhd Omar","family":"Al-Kadri","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7530-4119","authenticated-orcid":false,"given":"Luca","family":"Piras","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,3,12]]},"reference":[{"key":"25_CR1","doi-asserted-by":"publisher","unstructured":"Allix, K., Bissyand\u00e9, T.F., Klein, J., Le Traon, Y.: Androzoo: collecting millions of android apps for the research community. In: Proceedings of the 13th International Conference on Mining Software Repositories. MSR \u201916, pp. 468\u2013471. ACM, New York, NY, USA (2016). https:\/\/doi.org\/10.1145\/2901739.2903508","DOI":"10.1145\/2901739.2903508"},{"key":"25_CR2","unstructured":"Beutel, D.J., et al.: Flower: a friendly federated learning research framework (2022)"},{"key":"25_CR3","unstructured":"Bhatnagar, P.: Explainable AI (XAI) - a guide to 7 packages in python to explain your models (2021). https:\/\/towardsdatascience.com\/explainable-ai-xai-a-guide-to-7-packages_in-python-to-explain-your-models-932967f0634b. Accessed 20 Mar 2023"},{"key":"25_CR4","doi-asserted-by":"publisher","unstructured":"Calzavara, S., Grishchenko, I., Maffei, M.: Horndroid: practical and sound static analysis of android applications by SMT solving. In: 2016 IEEE European Symposium on Security and Privacy (EuroS &P), pp. 47\u201362. IEEE, Saarbruecken, Germany (2016). https:\/\/doi.org\/10.1109\/EuroSP.2016.16","DOI":"10.1109\/EuroSP.2016.16"},{"key":"25_CR5","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2021.100372","volume":"40","author":"S Garg","year":"2021","unstructured":"Garg, S., Baliyan, N.: Comparative analysis of android and IoS from security viewpoint. Comput. Sci. Rev. 40, 100372 (2021). https:\/\/doi.org\/10.1016\/j.cosrev.2021.100372","journal-title":"Comput. Sci. Rev."},{"key":"25_CR6","doi-asserted-by":"publisher","unstructured":"Ghaffarian, S.M., Shahriari, H.R.: Software vulnerability analysis and discovery using machine-learning and data-mining techniques: a survey. ACM Comput. Surv. 50(4) (2017). https:\/\/doi.org\/10.1145\/3092566","DOI":"10.1145\/3092566"},{"key":"25_CR7","unstructured":"Krasner, H.: The cost of poor software quality in the US: a 2020 report (2021). https:\/\/www.it-cisq.org\/cisq-files\/pdf\/CPSQ-2020-report.pdf"},{"key":"25_CR8","doi-asserted-by":"publisher","DOI":"10.1016\/j.cie.2020.106854","volume":"149","author":"L Li","year":"2020","unstructured":"Li, L., Fan, Y., Tse, M., Lin, K.Y.: A review of applications in federated learning. Comput. Ind. Eng. 149, 106854 (2020). https:\/\/doi.org\/10.1016\/j.cie.2020.106854","journal-title":"Comput. Ind. Eng."},{"issue":"3","key":"25_CR9","doi-asserted-by":"publisher","first-page":"50","DOI":"10.1109\/MSP.2020.2975749","volume":"37","author":"T Li","year":"2020","unstructured":"Li, T., Sahu, A.K., Talwalkar, A., Smith, V.: Federated learning: challenges, methods, and future directions. IEEE Sig. Process. Mag. 37(3), 50\u201360 (2020). https:\/\/doi.org\/10.1109\/MSP.2020.2975749","journal-title":"IEEE Sig. Process. Mag."},{"key":"25_CR10","doi-asserted-by":"publisher","unstructured":"Mitra, J., Ranganath, V.P.: Ghera: A repository of android app vulnerability benchmarks. In: Proceedings of the 13th International Conference on Predictive Models and Data Analytics in Software Engineering. PROMISE, pp. 43\u201352. Association for Computing Machinery, New York, NY, USA (2017). https:\/\/doi.org\/10.1145\/3127005.3127010","DOI":"10.1145\/3127005.3127010"},{"issue":"6","key":"25_CR11","doi-asserted-by":"publisher","first-page":"1853","DOI":"10.1109\/TSE.2020.3040554","volume":"48","author":"B Nagaria","year":"2022","unstructured":"Nagaria, B., Hall, T.: How software developers mitigate their errors when developing code. IEEE Trans. Softw. Eng. 48(6), 1853\u20131867 (2022). https:\/\/doi.org\/10.1109\/TSE.2020.3040554","journal-title":"IEEE Trans. Softw. Eng."},{"key":"25_CR12","unstructured":"Namrud, Z., Kpodjedo, S., Talhi, C.: Androvul: a repository for android security vulnerabilities. In: Proceedings of the 29th Annual International Conference on Computer Science and Software Engineering, pp. 64\u201371. IBM Corp., USA (2019). https:\/\/dl.acm.org\/doi\/abs\/10.5555\/3370272.3370279"},{"key":"25_CR13","unstructured":"NIST: National vulnerability database (2021). https:\/\/nvd.nist.gov\/vuln. Accessed 21 Mar 2023"},{"key":"25_CR14","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"275","DOI":"10.1007\/978-3-031-32636-3_16","volume-title":"Innovative Security Solutions for Information Technology and Communications - SecITC 2022","author":"S Rajapaksha","year":"2023","unstructured":"Rajapaksha, S., Senanayake, J., Kalutarage, H., Al-Kadri, M.O.: AI-powered vulnerability detection for secure source code development. In: Bella, G., Doinea, M., Janicke, H. (eds.) SecITC 2022. LNCS, vol. 13809, pp. 275\u2013288. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-32636-3_16"},{"key":"25_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"339","DOI":"10.1007\/978-3-031-37586-6_20","volume-title":"Data and Applications Security and Privacy XXXVII - DBSec 2023","author":"J Senanayake","year":"2023","unstructured":"Senanayake, J., Kalutarage, H., Al-Kadri, M.O., Petrovski, A., Piras, L.: Android code vulnerabilities early detection using AI-powered ACVED plugin. In: Atluri, V., Ferrara, A.L. (eds.) DBSec 2023. LNCS, vol. 13942, pp. 339\u2013357. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-37586-6_20"},{"key":"25_CR16","doi-asserted-by":"publisher","unstructured":"Senanayake, J., Kalutarage, H., Al-Kadri, M.O., Petrovski, A., Piras, L.: Android source code vulnerability detection: a systematic literature review. ACM Comput. Surv. 55(9) (2023). https:\/\/doi.org\/10.1145\/3556974","DOI":"10.1145\/3556974"},{"key":"25_CR17","doi-asserted-by":"publisher","unstructured":"Senanayake., J., Kalutarage., H., Al-Kadri., M.O., Piras., L., Petrovski., A.: Labelled vulnerability dataset on android source code (lvdandro) to develop AI-based code vulnerability detection models. In: Proceedings of the 20th International Conference on Security and Cryptography - SECRYPT, pp. 659\u2013666. INSTICC, SciTePress (2023). https:\/\/doi.org\/10.5220\/0012060400003555","DOI":"10.5220\/0012060400003555"},{"key":"25_CR18","doi-asserted-by":"publisher","unstructured":"Srivastava, G., et al.: XAI for cybersecurity: state of the art, challenges, open issues and future directions (2022). https:\/\/doi.org\/10.48550\/ARXIV.2206.03585","DOI":"10.48550\/ARXIV.2206.03585"},{"key":"25_CR19","unstructured":"Statista: Average number of new android app releases via google play per month from March 2019 to May 2023 (2023). https:\/\/www.statista.com\/statistics\/1020956\/android-app-releases-worldwide\/. Accessed 02 July 2023"},{"key":"25_CR20","doi-asserted-by":"publisher","unstructured":"Tang, J., Li, R., Wang, K., Gu, X., Xu, Z.: A novel hybrid method to analyze security vulnerabilities in android applications. Tsinghua Sci. Technol. 25(5), 589\u2013603 (2020). https:\/\/doi.org\/10.26599\/TST.2019.9010067","DOI":"10.26599\/TST.2019.9010067"}],"container-title":["Lecture Notes in Computer Science","Computer Security. ESORICS 2023 International Workshops"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-54129-2_25","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,11]],"date-time":"2024-03-11T22:06:52Z","timestamp":1710194812000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-54129-2_25"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031541285","9783031541292"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-54129-2_25","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"12 March 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ESORICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"European Symposium on Research in Computer Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"The Hague","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"The Netherlands","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"25 September 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29 September 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"esorics2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/esorics2023.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Easychair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"478","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"93","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"19% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3-4","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"10","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}