{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,31]],"date-time":"2026-07-31T22:40:35Z","timestamp":1785537635499,"version":"3.56.0"},"reference-count":99,"publisher":"Springer Science and Business Media LLC","issue":"7","license":[{"start":{"date-parts":[[2024,10,12]],"date-time":"2024-10-12T00:00:00Z","timestamp":1728691200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,10,12]],"date-time":"2024-10-12T00:00:00Z","timestamp":1728691200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["SN COMPUT. SCI."],"DOI":"10.1007\/s42979-024-03325-y","type":"journal-article","created":{"date-parts":[[2024,10,12]],"date-time":"2024-10-12T08:03:38Z","timestamp":1728720218000},"update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["A Survey on Secure Refactoring"],"prefix":"10.1007","volume":"5","author":[{"ORCID":"https:\/\/orcid.org\/0009-0008-8623-6079","authenticated-orcid":false,"given":"Estomii","family":"Edward","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ally S.","family":"Nyamawe","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Noe","family":"Elisa","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2024,10,12]]},"reference":[{"key":"3325_CR1","volume-title":"RefactimprovingrovindesignDesiexistingisting Code Second Edition, Second Edi","author":"M Fowler","year":"2019","unstructured":"Fowler M, Beck K. RefactimprovingrovindesignDesiexistingisting Code Second Edition, Second Edi. New York: Pearson Education Limited; 2019."},{"key":"3325_CR2","doi-asserted-by":"publisher","first-page":"62","DOI":"10.1145\/3102980.3102991","volume":"Part F1293","author":"B Jain","year":"2017","unstructured":"Jain B, Tsai CC, Porter DE. A Clairvoyant Approach to evaluating Software (in)security. Proc Work Hot Top Oper Syst - HOTOS. 2017;Part F1293:62\u20138. https:\/\/doi.org\/10.1145\/3102980.3102991.","journal-title":"Proc Work Hot Top Oper Syst - HOTOS"},{"issue":"3","key":"3325_CR3","doi-asserted-by":"publisher","first-page":"293","DOI":"10.1017\/S0956796813000117","volume":"23","author":"S Thompson","year":"2013","unstructured":"Thompson S, Li H. Refactoring tools for functional languages. J Funct Program. 2013;23(3):293\u2013350. https:\/\/doi.org\/10.1017\/S0956796813000117.","journal-title":"J Funct Program"},{"key":"3325_CR4","doi-asserted-by":"publisher","unstructured":"Mohan M, Greer D. A survey of search-based refactoring for software maintenance. J Softw Eng Res Dev. 2018;6(1). https:\/\/doi.org\/10.1186\/s40411-018-0046-4.","DOI":"10.1186\/s40411-018-0046-4"},{"issue":"4","key":"3325_CR5","doi-asserted-by":"publisher","first-page":"365","DOI":"10.1109\/TSE.2017.2679742","volume":"44","author":"ELG Alves","year":"2018","unstructured":"Alves ELG, Song M, Massoni T, MacHado PDL, Kim M. Refactoring inspection support for Manual Refactoring Edits. IEEE Trans Softw Eng. 2018;44(4):365\u201383. https:\/\/doi.org\/10.1109\/TSE.2017.2679742.","journal-title":"IEEE Trans Softw Eng"},{"issue":"no ii","key":"3325_CR6","doi-asserted-by":"publisher","first-page":"pp731","DOI":"10.1109\/SANER53432.2022.00090","volume":"1","author":"G Sellitto","year":"2022","unstructured":"Sellitto G, et al. Toward understanding the impact of refactoring on Program Comprehension. Proc - 2022 IEEE Int Conf Softw Anal Evol Reengineering SANER 2022. 2022;1(no ii):pp731\u2013742. https:\/\/doi.org\/10.1109\/SANER53432.2022.00090.","journal-title":"Proc - 2022 IEEE Int Conf Softw Anal Evol Reengineering SANER 2022"},{"key":"3325_CR7","doi-asserted-by":"publisher","unstructured":"Smith F S., Thober M. Refactoring programs to secure information flows. PLAS 2006 - Proc 2006 Program Lang Anal Secur Work. 2006;2006:75\u201384. https:\/\/doi.org\/10.1145\/1134744.1134758.","DOI":"10.1145\/1134744.1134758"},{"key":"3325_CR8","doi-asserted-by":"publisher","first-page":"164","DOI":"10.1109\/SBES.2011.21","volume":"no September","author":"G Soares","year":"2011","unstructured":"Soares G, Cat\u00e3o B, Varj\u00e3o C, Aguiar S, Gheyi R, Massoni T. Analyzing refactorings on software repositories. Proc - 25th Brazilian Symp Softw Eng SBES 2011. 2011;no September:164\u201373. https:\/\/doi.org\/10.1109\/SBES.2011.21.","journal-title":"Proc - 25th Brazilian Symp Softw Eng SBES 2011"},{"key":"3325_CR9","unstructured":"Alshammari B, Fidge C, Corney D. Security assessment of code refactoring rules, WIAR 2012 - Natl. Work. Inf. Assur. Res. Proc., pp. 65\u201374, 2012."},{"key":"3325_CR10","doi-asserted-by":"publisher","first-page":"222","DOI":"10.5220\/0001339102220229","volume":"SE","author":"K Maruyama","year":"2007","unstructured":"Maruyama K. Secure refactoring: improving the security level of existing code. ICSOFT 2007\u20132nd Int Conf Softw Data Technol Proc. 2007;SE:222\u20139. https:\/\/doi.org\/10.5220\/0001339102220229.","journal-title":"ICSOFT 2007\u20132nd Int Conf Softw Data Technol Proc"},{"key":"3325_CR11","doi-asserted-by":"publisher","unstructured":"Mahmoud M. Toward secure refactoring of object-oriented programs. J Phys Conf Ser. 2021;1812(1). https:\/\/doi.org\/10.1088\/1742-6596\/1812\/1\/012036.","DOI":"10.1088\/1742-6596\/1812\/1\/012036"},{"key":"3325_CR12","doi-asserted-by":"publisher","unstructured":"Washizaki H, Yoshioka N, Washizaki H, Maruyama K. A survey on security patterns. No 5. 2008;13. https:\/\/doi.org\/10.2201\/NiiPi.2008.5.5.","DOI":"10.2201\/NiiPi.2008.5.5"},{"key":"3325_CR13","doi-asserted-by":"publisher","unstructured":"Maruyama K, Tokoda K. Security-aware refactoring alerting its impact on code vulnerabilities. Neonatal Paediatr Child Heal Nurs. 2008;445\u201352. https:\/\/doi.org\/10.1109\/APSEC.2008.57.","DOI":"10.1109\/APSEC.2008.57"},{"key":"3325_CR14","unstructured":"Opdyke WF. Refactoring: a program restructuring aid in designing object-oriented application frameworks. Univ Ill Urbana-Champaign, p. 206, 1992."},{"key":"3325_CR15","doi-asserted-by":"publisher","first-page":"645","DOI":"10.1063\/1.3516393","volume":"1298","author":"RPSP Veerraju","year":"2010","unstructured":"Veerraju RPSP, Rao AS, Murali G. Refactoring and its benefits. AIP Conf Proc. 2010;1298:645\u201350. https:\/\/doi.org\/10.1063\/1.3516393.","journal-title":"AIP Conf Proc"},{"issue":"6","key":"3325_CR16","doi-asserted-by":"publisher","first-page":"197","DOI":"10.14257\/ijseia.2015.9.6.19","volume":"9","author":"S Rochimah","year":"2015","unstructured":"Rochimah S, Arifiani S, Insanittaqwa VF. Non-source code refactoring: a systematic literature review. Int J Softw Eng its Appl. 2015;9(6):197\u2013214. https:\/\/doi.org\/10.14257\/ijseia.2015.9.6.19.","journal-title":"Int J Softw Eng its Appl"},{"key":"3325_CR17","volume-title":"Software Security:Building Security in","author":"G McGraw","year":"2006","unstructured":"McGraw G. Software Security:Building Security in. Boston: Addison-Wesley; 2006."},{"key":"3325_CR18","doi-asserted-by":"publisher","unstructured":"Wen S-F. Software security in open source development: a systematic literature review. Proceeding 21St Conf Fruct Assoc. 2017;364\u201373. https:\/\/doi.org\/10.23919\/FRUCT.2017.8250205.","DOI":"10.23919\/FRUCT.2017.8250205"},{"key":"3325_CR19","doi-asserted-by":"publisher","first-page":"97","DOI":"10.1016\/j.cose.2013.04.004","volume":"38","author":"R Von Solms","year":"2013","unstructured":"Von Solms R, Van Niekerk J. From information security to cyber security. Comput Secur. 2013;38:97\u2013102. https:\/\/doi.org\/10.1016\/j.cose.2013.04.004.","journal-title":"Comput Secur"},{"key":"3325_CR20","unstructured":"Whitman ME, Mattord HJ. Principles of Information Security, Cengage Learn., p. 11, 2018, [Online]. Available: www.cengage.com"},{"key":"3325_CR21","doi-asserted-by":"publisher","unstructured":"Bast\u00edas OA, D\u00edaz J, L\u00f3pez Fenner J. Exploring the intersection between Software maintenance and machine Learning\u2014A systematic mapping study. Appl Sci. 2023;13(3). https:\/\/doi.org\/10.3390\/app13031710.","DOI":"10.3390\/app13031710"},{"key":"3325_CR22","unstructured":"Nyamawe AS. Requirements?Driven recommendation of Software Refactoring. Beijing Institute ofTechnology; 2020."},{"key":"3325_CR23","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1109\/ESEM.2019.8870177","volume":"2019\u2013Septe","author":"EA Alomar","year":"2019","unstructured":"Alomar EA, Mkaouer MW, Ouni A, Kessentini M. On the impact of refactoring on the relationship between Quality attributes and Design Metrics. Int Symp Empir Softw Eng Meas. 2019;2019\u2013Septe:1\u201311. https:\/\/doi.org\/10.1109\/ESEM.2019.8870177.","journal-title":"Int Symp Empir Softw Eng Meas"},{"key":"3325_CR24","doi-asserted-by":"publisher","unstructured":"Almogahed A, Omar M, Zakaria NH, Muhammad G, AlQahtani SA. Revisiting scenarios of using refactoring techniques to improve Software systems Quality. IEEE Access. 2022;1. https:\/\/doi.org\/10.1109\/ACCESS.2022.3218007.","DOI":"10.1109\/ACCESS.2022.3218007"},{"key":"3325_CR25","doi-asserted-by":"publisher","first-page":"313","DOI":"10.1109\/ICICCT.2018.8473027","volume":"no Icicct","author":"BK Sidhu","year":"2018","unstructured":"Sidhu BK, Singh K, Sharma N. A catalogue of Model smells and Refactoring operations for object-oriented Software. Proc Int Conf Inven Commun Comput Technol ICICCT 2018. 2018;no Icicct:313\u20139. https:\/\/doi.org\/10.1109\/ICICCT.2018.8473027.","journal-title":"Proc Int Conf Inven Commun Comput Technol ICICCT 2018"},{"key":"3325_CR26","doi-asserted-by":"publisher","unstructured":"Khrishe Y, Alshayeb M. An empirical study on the effect of the order of applying software refactoring. Proc - CSIT 2016 2016 7th Int Conf Comput Sci Inf Technol. 2016;5\u20138. https:\/\/doi.org\/10.1109\/CSIT.2016.7549471.","DOI":"10.1109\/CSIT.2016.7549471"},{"key":"3325_CR27","doi-asserted-by":"publisher","unstructured":"Halim A, Mursanto P. Refactoring rules effect of class cohesion on high-level design. Proc - 2013 Int Conf Inf Technol Electr Eng Intell Green Technol Sustain Dev ICITEE 2013. 2013;197\u2013202. https:\/\/doi.org\/10.1109\/ICITEED.2013.6676238.","DOI":"10.1109\/ICITEED.2013.6676238"},{"key":"3325_CR28","doi-asserted-by":"publisher","first-page":"144","DOI":"10.1007\/978-3-319-27033-3_10","volume":"238","author":"R Haas","year":"2016","unstructured":"Haas R, Hummel B. Deriving extract method refactoring suggestions for long methods. Lect Notes Bus Inf Process. 2016;238:144\u201355. https:\/\/doi.org\/10.1007\/978-3-319-27033-3_10.","journal-title":"Lect Notes Bus Inf Process"},{"key":"3325_CR29","unstructured":"Griffith I, Wahl S, Izurieta C. TrueRefactor: an Automated Refactoring Tool to Improve Legacy System and Application Comprehensibility. Int Conf Comput Appl Ind Eng, 2011."},{"key":"3325_CR30","doi-asserted-by":"publisher","unstructured":"Paix\u00e3o M, et al. Behind the intents: an In-depth empirical study on Software Refactoring in Modern Code Review. Proc - 2020 IEEE\/ACM 17th Int Conf Min Softw Repos MSR 2020. 2020;125\u201336. https:\/\/doi.org\/10.1145\/3379597.3387475.","DOI":"10.1145\/3379597.3387475"},{"key":"3325_CR31","doi-asserted-by":"publisher","unstructured":"Bavota G, De Lucia A, Marcus A, Oliveto R. A two-step technique for extract class refactoring. ASE\u201910 - Proc IEEE\/ACM Int Conf Autom Softw Eng. 2010;151\u20134. https:\/\/doi.org\/10.1145\/1858996.1859024.","DOI":"10.1145\/1858996.1859024"},{"key":"3325_CR32","unstructured":"Singh J. Extract Class Refactoring by analyzing class variables. Iowa State Univ, 2013."},{"key":"3325_CR33","doi-asserted-by":"publisher","unstructured":"AlOmar EA, Mkaouer MW, Newman C, Ouni A. On preserving the behavior in software refactoring: a systematic mapping study. Inf Softw Technol. 2021;140. https:\/\/doi.org\/10.1016\/j.infsof.2021.106675.","DOI":"10.1016\/j.infsof.2021.106675"},{"issue":"4","key":"3325_CR34","first-page":"127","volume":"5","author":"R Shatnawi","year":"2011","unstructured":"Shatnawi R, Li W. An empirical assessment of refactoring impact on software quality using a hierarchical quality model. Int J Softw Eng its Appl. 2011;5(4):127\u201350.","journal-title":"Int J Softw Eng its Appl"},{"key":"3325_CR35","doi-asserted-by":"publisher","unstructured":"Rebai S, Ben Sghaier O, Alizadeh V, Kessentini M, Chater M. Interactive refactoring documentation bot. Proc - 19th IEEE Int Work Conf Source Code Anal Manip SCAM 2019. 2019;152\u201362. https:\/\/doi.org\/10.1109\/SCAM.2019.00026.","DOI":"10.1109\/SCAM.2019.00026"},{"key":"3325_CR36","unstructured":"Tsantalis N, Guana V, Stroulia E, Hindle A. A Multidimensional Empirical Study on Refactoring Activity, Proc. 2013 Conf. Cent. Adv. Stud. Collab. Res., pp. 132\u2013146, 2013, [Online]. Available: http:\/\/dl.acm.org\/citation.cfm?id=2555523.2555539"},{"key":"3325_CR37","doi-asserted-by":"publisher","unstructured":"AlOmar EA, et al. On the documentation of refactoring types. Autom Softw Eng. 2022;29(1). https:\/\/doi.org\/10.1007\/s10515-021-00314-w.","DOI":"10.1007\/s10515-021-00314-w"},{"issue":"2","key":"3325_CR38","doi-asserted-by":"publisher","first-page":"126","DOI":"10.1109\/TSE.2004.1265817","volume":"30","author":"T Mens","year":"2004","unstructured":"Mens T, Tourw\u00e9 T. A survey of software refactoring. IEEE Trans Softw Eng. 2004;30(2):126\u201339. https:\/\/doi.org\/10.1109\/TSE.2004.1265817.","journal-title":"IEEE Trans Softw Eng"},{"issue":"11","key":"3325_CR39","doi-asserted-by":"publisher","first-page":"542","DOI":"10.14569\/ijacsa.2017.081167","volume":"8","author":"I Keshta","year":"2017","unstructured":"Keshta I. Software Refactoring approaches: a Survey. Int J Adv Comput Sci Appl. 2017;8(11):542\u20137. https:\/\/doi.org\/10.14569\/ijacsa.2017.081167.","journal-title":"Int J Adv Comput Sci Appl"},{"issue":"2","key":"3325_CR40","doi-asserted-by":"publisher","first-page":"459","DOI":"10.1007\/s11219-019-09477-y","volume":"28","author":"AAB Baqais","year":"2019","unstructured":"Baqais AAB, Alshayeb M. Automatic software refactoring: a systematic literature review. Softw Qual J. 2019;28(2):459\u2013502. https:\/\/doi.org\/10.1007\/s11219-019-09477-y.","journal-title":"Softw Qual J"},{"key":"3325_CR41","doi-asserted-by":"publisher","DOI":"10.1145\/2393596.2393655","author":"M Kim","year":"2012","unstructured":"Kim M, Zimmermann T, Nagappan N. A field study of refactoring challenges and benefits. Proc ACM SIGSOFT 20th Int Symp Found Softw Eng FSE 2012. 2012. https:\/\/doi.org\/10.1145\/2393596.2393655.","journal-title":"Proc ACM SIGSOFT 20th Int Symp Found Softw Eng FSE 2012"},{"key":"3325_CR42","doi-asserted-by":"crossref","unstructured":"Kim M, Zimmermann T, Nagappan N. An Empirical Study of Refactoring Challenges and Benefits at Microsoft, 2014.","DOI":"10.1109\/TSE.2014.2318734"},{"issue":"6","key":"3325_CR43","doi-asserted-by":"publisher","first-page":"299","DOI":"10.14257\/ijseia.2014.8.6.24","volume":"8","author":"M Abebe","year":"2014","unstructured":"Abebe M, Yoo CJ. Trends, opportunities and challenges of software refactoring: a systematic literature review. Int J Softw Eng its Appl. 2014;8(6):299\u2013318. https:\/\/doi.org\/10.14257\/ijseia.2014.8.6.24.","journal-title":"Int J Softw Eng its Appl"},{"key":"3325_CR44","doi-asserted-by":"publisher","first-page":"121","DOI":"10.1007\/978-3-642-33119-0_10","volume":"7515 LNCS","author":"S Ghaith","year":"2012","unstructured":"Ghaith S, Cinn\u00e9ide M\u00d3. Improving software security using search-based refactoring. Lect Notes Comput Sci (Including Subser Lect Notes Artif Intell Lect Notes Bioinformatics). 2012;7515 LNCS:121\u201335. https:\/\/doi.org\/10.1007\/978-3-642-33119-0_10.","journal-title":"Lect Notes Comput Sci (Including Subser Lect Notes Artif Intell Lect Notes Bioinformatics)"},{"key":"3325_CR45","doi-asserted-by":"publisher","unstructured":"Almogahed A, Omar M, Zakaria NH. Refactoring Codes to Improve Software Security Requirements, Procedia Comput. Sci., vol. 204, no. September, pp. 108\u2013115, 2022, https:\/\/doi.org\/10.1016\/j.procs.2022.08.013","DOI":"10.1016\/j.procs.2022.08.013"},{"key":"3325_CR46","doi-asserted-by":"crossref","unstructured":"Xie J, Chu B, Lipford HR, Melton JT. ASIDE: IDE Support for Web Application Security, 2011.","DOI":"10.1145\/2076732.2076770"},{"key":"3325_CR47","doi-asserted-by":"publisher","first-page":"57","DOI":"10.1145\/1370905.1370913","volume":"no May 2008","author":"I Chowdhury","year":"2008","unstructured":"Chowdhury I, Chan B, Zulkernine M. Security metrics for source code structures. Proc - Int Conf Softw Eng. 2008;no May 2008:57\u201364. https:\/\/doi.org\/10.1145\/1370905.1370913.","journal-title":"Proc - Int Conf Softw Eng"},{"key":"3325_CR48","doi-asserted-by":"publisher","unstructured":"Alshammari B, Fidgeand C, Corney D. Security metrics for object-oriented class designs. Proc - Int Conf Qual Softw. 2009;11\u201320. https:\/\/doi.org\/10.1109\/QSIC.2009.11.","DOI":"10.1109\/QSIC.2009.11"},{"key":"3325_CR49","volume-title":"Guidelines for performing systematic literature reviews in Software Engineering","author":"B Kitchenham","year":"2007","unstructured":"Kitchenham B, et al. Guidelines for performing systematic literature reviews in Software Engineering. Volume 4, 2nd ed. Durham, UK: Keele University; 2007.","edition":"2"},{"issue":"4","key":"3325_CR50","first-page":"285","volume":"43","author":"A Alkhalid","year":"2011","unstructured":"Alkhalid A, Alshayeb M, Mahmoud SA. Software refactoring at the class level using clustering techniques. J Res Pract Inf Technol. 2011;43(4):285\u2013306.","journal-title":"J Res Pract Inf Technol"},{"key":"3325_CR51","doi-asserted-by":"publisher","first-page":"32","DOI":"10.1109\/ICTACC.2017.18","volume":"2017\u2013Octob","author":"M Vimaladevi","year":"2017","unstructured":"Vimaladevi M, Zayaraz G. Stability aware software refactoring using hybrid search based techniques. Proc - 2017 Int Conf Tech Adv Comput Commun ICTACC 2017. 2017;2017\u2013Octob:32\u20135. https:\/\/doi.org\/10.1109\/ICTACC.2017.18.","journal-title":"Proc - 2017 Int Conf Tech Adv Comput Commun ICTACC 2017"},{"key":"3325_CR52","unstructured":"Rucareanu I. PHP: Securing against SQL injection. Univ Amsterdam, 2013."},{"key":"3325_CR53","doi-asserted-by":"publisher","first-page":"183","DOI":"10.1007\/978-3-319-30668-1_12","volume":"9594","author":"B Aziz","year":"2016","unstructured":"Aziz B, Bader M, Hippolyte C. Search-based SQL injection attacks testing using genetic programming. Lect Notes Comput Sci (Including Subser Lect Notes Artif Intell Lect Notes Bioinformatics). 2016;9594:183\u201398. https:\/\/doi.org\/10.1007\/978-3-319-30668-1_12.","journal-title":"Lect Notes Comput Sci (Including Subser Lect Notes Artif Intell Lect Notes Bioinformatics)"},{"key":"3325_CR54","unstructured":"Papagiannis I, Migliavacca M, Pietzuch P. PHP Aspis: Using Partial Taint Tracking To Protect Against Injection Attacks, WebApps \u201911 2nd USENIX Conf. Web Appl. Dev., p. 156, 2011, [Online]. Available: https:\/\/www.usenix.org\/legacy\/events\/webapps11\/tech\/final_files\/webapps11_proceedings.pdf#page=83"},{"key":"3325_CR55","doi-asserted-by":"publisher","unstructured":"Muntean P, Kommanapalli V, Ibing A, Eckert C. Automated generation of buffer overflow quick fixes using symbolic execution and SMT. Lect Notes Comput Sci (Including Subser Lect Notes Artif Intell Lect Notes Bioinformatics). 2015;9338. https:\/\/doi.org\/10.1007\/978-3-319-24255-2.","DOI":"10.1007\/978-3-319-24255-2"},{"key":"3325_CR56","doi-asserted-by":"publisher","unstructured":"Duan J, Yang Y, Zhou J, Criswell J. Refactoring the FreeBSD Kernel with checked C. Proc - 2020 IEEE Secur Dev SecDev 2020. 2020;15\u201322. https:\/\/doi.org\/10.1109\/SecDev45635.2020.00018.","DOI":"10.1109\/SecDev45635.2020.00018"},{"key":"3325_CR57","unstructured":"Doggett DJ. Removing buffer overflows in C Programs with Safe Library replacement Transformation. Auburn Univ, 2013."},{"key":"3325_CR58","doi-asserted-by":"publisher","unstructured":"Shaw A, Doggett D, Hafiz M. Automatically fixing C buffer overflows using program transformations. Proc Int Conf Dependable Syst Networks. 2014;124\u201335. https:\/\/doi.org\/10.1109\/DSN.2014.25.","DOI":"10.1109\/DSN.2014.25"},{"key":"3325_CR59","doi-asserted-by":"publisher","unstructured":"Mohammadi M, Chu B, Richter Lipford H. Automated repair of cross-site scripting vulnerabilities through unit testing. Proc - 2019 IEEE 30th Int Symp Softw Reliab Eng Work ISSREW 2019. 2019;370\u20137. https:\/\/doi.org\/10.1109\/ISSREW.2019.00098.","DOI":"10.1109\/ISSREW.2019.00098"},{"key":"3325_CR60","unstructured":"Nafees T, Coull N, Ferguson I, Sampson A. Vulnerability Anti-Patterns: A Timeless Way to Capture Poor Software Practices (Vulnerabilities), Proc. 24th Conf. Pattern Lang. Programs, pp. 1\u201316, 2017."},{"key":"3325_CR61","doi-asserted-by":"publisher","first-page":"112","DOI":"10.1016\/j.infsof.2017.11.010","volume":"96","author":"H Mumtaz","year":"2018","unstructured":"Mumtaz H, Alshayeb M, Mahmood S, Niazi M. An empirical study to improve software security through the application of code refactoring. Inf Softw Technol. 2018;96:112\u201325. https:\/\/doi.org\/10.1016\/j.infsof.2017.11.010.","journal-title":"Inf Softw Technol"},{"key":"3325_CR62","doi-asserted-by":"publisher","unstructured":"Bavota G, De Carluccio B, De Lucia A, Di Penta M, Oliveto R, Strollo O. When does a refactoring induce bugs? An empirical study, Proc. \u2013\u20092012 IEEE 12th Int. Work. Conf. Source Code Anal. Manip. SCAM 2012, pp. 104\u2013113, 2012, https:\/\/doi.org\/10.1109\/SCAM.2012.20","DOI":"10.1109\/SCAM.2012.20"},{"key":"3325_CR63","unstructured":"Di Penta M, Bavota G, Zampetti F. On the Relationship between Refactoring Actions and Bugs: A Differentiated Replication, vol. 1, p. 12, 2020, [Online]. Available: https:\/\/arxiv.org\/pdf\/2009.11685.pdf"},{"key":"3325_CR64","doi-asserted-by":"crossref","unstructured":"Gigante D, Pecorelli F, Barletta VS, Janes A, Lenarduzzi V. Resolving Security issues via quality-oriented refactoring: a user study. no. February, 2023.","DOI":"10.1109\/TechDebt59074.2023.00016"},{"issue":"3","key":"3325_CR65","doi-asserted-by":"publisher","first-page":"864","DOI":"10.1109\/TSE.2020.3005995","volume":"48","author":"C Abid","year":"2018","unstructured":"Abid C, Kessentini M, Alizadeh V, Dhaouadi M, Kazman R. How does Refactoring Impact Security when improving quality? A Security-Aware Refactoring Approach. IEEE Trans Softw Eng. 2018;48(3):864\u201378. https:\/\/doi.org\/10.1109\/TSE.2020.3005995.","journal-title":"IEEE Trans Softw Eng"},{"key":"3325_CR66","unstructured":"Abid C, Rzig DE, Ferreira T, Kessentini M, Sharma T. Explainable Search-Based Refactoring, vol. 14, no. 8, pp. 1\u201318, 2020, [Online]. Available: https:\/\/pandas.pydata.org\/pandas-docs\/stable\/reference\/index.html"},{"key":"3325_CR67","unstructured":"Abid C. Explainable, Security-Aware and Dependency-Aware Framework for Intelligent Software Refactoring. University of Michigan-Dearborn; 2021."},{"key":"3325_CR68","doi-asserted-by":"publisher","unstructured":"Harman M, Mansouri SA, Zhang Y. Search-based software engineering: Trends, techniques and applications. ACM Comput Surv. 2012;45(1). https:\/\/doi.org\/10.1145\/2379776.2379787.","DOI":"10.1145\/2379776.2379787"},{"key":"3325_CR69","unstructured":"Iannone E, Codabux Z, Lenarduzzi V, Palomba F. Rubbing salt in the Wound ? A large-scale investigation into the effects of Refactoring on Security into the effects of Refactoring on Security. no. January, 2020."},{"key":"3325_CR70","doi-asserted-by":"crossref","unstructured":"Ruland S, Kulcs\u00e1r G, Leblebici E, Peldszus S, Lochau M. Controlling the Attack Surface of object-oriented Refactorings Controlling the Attack Surface of object-oriented refactorings. no. January. Springer International Publishing; 2018.","DOI":"10.1007\/978-3-319-89363-1_3"},{"key":"3325_CR71","unstructured":"Gogo KO, Kiruki J. Trends in Measuring and preventing Software Security weaknesses \u2013 a Survey, no. 6, 2016."},{"key":"3325_CR72","doi-asserted-by":"publisher","unstructured":"Maruyama K, Omori T. A security-Aware refactoring tool for Java programs, WRT 2011 - Proc. 4th Work. Refactoring Tools, co-located with ICSE 2011, pp. 22\u201328, 2011, https:\/\/doi.org\/10.1145\/1984732.1984737","DOI":"10.1145\/1984732.1984737"},{"issue":"1","key":"3325_CR73","doi-asserted-by":"publisher","first-page":"31","DOI":"10.33832\/ijsia.2020.14.1.03","volume":"14","author":"H Mumtaz","year":"2020","unstructured":"Mumtaz H, Alshayeb M, Mahmood S, Niazi M. Improving the security quality of Use Case models through the application of Software Refactoring using genetic algorithm. Int J Secur Its Appl. 2020;14(1):31\u201348. https:\/\/doi.org\/10.33832\/ijsia.2020.14.1.03.","journal-title":"Int J Secur Its Appl"},{"key":"3325_CR74","doi-asserted-by":"publisher","unstructured":"Ponce F, Soldani J, Astudillo H, Brogi A. Smells and refactorings for microservices security: a multivocal literature review. J Syst Softw. Oct. 2022;192(1):111393. https:\/\/doi.org\/10.1016\/j.jss.2022.111393.","DOI":"10.1016\/j.jss.2022.111393"},{"issue":"2","key":"3325_CR75","doi-asserted-by":"publisher","first-page":"139","DOI":"10.7763\/LNSE.2016.V4.239","volume":"4","author":"BM Alshammari","year":"2016","unstructured":"Alshammari BM, Fidge CJ, Corney D. Developing Secure systems: a comparative study of existing methodologies. Lecture Notes Softw Eng. 2016;4(2):139\u201346.","journal-title":"Lecture Notes Softw Eng"},{"issue":"2","key":"3325_CR76","doi-asserted-by":"publisher","first-page":"24","DOI":"10.5815\/ijmecs.2015.02.04","volume":"7","author":"AS Khan","year":"2015","unstructured":"Khan AS, Khan AR. Security improvement of object oriented design using refactoring rules. Int J Mod Educ Comput Sci. 2015;7(2):24\u201331. https:\/\/doi.org\/10.5815\/ijmecs.2015.02.04.","journal-title":"Int J Mod Educ Comput Sci"},{"issue":"13","key":"3325_CR77","doi-asserted-by":"publisher","first-page":"2700","DOI":"10.1016\/j.ins.2010.06.002","volume":"181","author":"R Coelho","year":"2011","unstructured":"Coelho R, Von Staa A, Kulesza U, Rashid A, Lucena C. Unveiling and taming liabilities of aspects in the presence of exceptions: a static analysis based approach. Inf Sci (Ny). 2011;181(13):2700\u201320. https:\/\/doi.org\/10.1016\/j.ins.2010.06.002.","journal-title":"Inf Sci (Ny)"},{"key":"3325_CR78","doi-asserted-by":"publisher","unstructured":"Machiry A, Kastner J, Mccutchen M, Eline A, Headley K, Hicks M. C to checked C by 3c, Proc. ACM Program. Lang., vol. 6, no. OOPSLA1, 2022, https:\/\/doi.org\/10.1145\/3527322","DOI":"10.1145\/3527322"},{"key":"3325_CR79","doi-asserted-by":"publisher","unstructured":"Han L, Hou T, Shan S, Li Y, Cui B. The Research of Aspect-Oriented Dynamic Analysis Based on Static Analysis, Proc. \u2013\u20092015 10th Int. Conf. Broadband Wirel. Comput. Commun. Appl. BWCCA 2015, pp. 114\u2013119, 2015, https:\/\/doi.org\/10.1109\/BWCCA.2015.72","DOI":"10.1109\/BWCCA.2015.72"},{"key":"3325_CR80","doi-asserted-by":"publisher","unstructured":"Munaiah N, Meneely A. Beyond the attack surface assessing security risk with random walks on call graphs, SPRO 2016 - Proc. 2016 ACM Work. Softw. Prot. co-located with CCS 2016, pp. 3\u201314, 2016, https:\/\/doi.org\/10.1145\/2995306.2995311","DOI":"10.1145\/2995306.2995311"},{"key":"3325_CR81","unstructured":"Siavvas M, Gelenbe E, Kehagias D. Static analysis-based approaches. Volume 2. Springer International Publishing; 2018."},{"key":"3325_CR82","doi-asserted-by":"publisher","first-page":"187","DOI":"10.1109\/RE.2019.00029","volume":"2019\u2013Septe","author":"AS Nyamawe","year":"2019","unstructured":"Nyamawe AS, Liu H, Niu N, Umer Q, Niu Z. Automated recommendation of software refactorings based on feature requests. Proc IEEE Int Conf Requir Eng. 2019;2019\u2013Septe:187\u201398. https:\/\/doi.org\/10.1109\/RE.2019.00029.","journal-title":"Proc IEEE Int Conf Requir Eng"},{"key":"3325_CR83","doi-asserted-by":"publisher","unstructured":"Silva D, Tsantalis N, Valente MT. Why we Refactor? Confessions of Github contributors, Proc. ACM SIGSOFT Symp. Found. Softw. Eng., vol. 13-18-Nove, pp. 858\u2013870, 2016, https:\/\/doi.org\/10.1145\/2950290.2950305","DOI":"10.1145\/2950290.2950305"},{"issue":"3","key":"3325_CR84","doi-asserted-by":"publisher","first-page":"53","DOI":"10.1145\/2932631","volume":"25","author":"ALI Ouni","year":"2016","unstructured":"Ouni ALI, Kessentini M, Sahraoui H, Inoue K, Deb K. Multi-criteria Code Refactoring using search-based Software Engineering: an Industrial Case Study. ACM Trans Softw Eng Methodol. 2016;25(3):53.","journal-title":"ACM Trans Softw Eng Methodol"},{"key":"3325_CR85","doi-asserted-by":"publisher","unstructured":"Lin Y, Peng X, Cai Y, Dig D, Zheng D, Zhao W. Interactive and guided architectural refactoring with search-based recommendation, Proc. ACM SIGSOFT Symp. Found. Softw. Eng., vol. 13-18-Nove, pp. 535\u2013546, 2016, https:\/\/doi.org\/10.1145\/2950290.2950317","DOI":"10.1145\/2950290.2950317"},{"key":"3325_CR86","doi-asserted-by":"publisher","unstructured":"Niu N, Bhowmik T, Liu H, Niu Z. Traceability-enabled refactoring for managing just-in-time requirements, 2014 IEEE 22nd Int. Requir. Eng. Conf. RE 2014 - Proc., pp. 133\u2013142, 2014, https:\/\/doi.org\/10.1109\/RE.2014.6912255","DOI":"10.1109\/RE.2014.6912255"},{"key":"3325_CR87","doi-asserted-by":"publisher","unstructured":"Nyamawe AS, Liu H, Niu Z, Wang W, Niu N. Recommending refactoring solutions based on traceability and code metrics, IEEE Access, vol. 6, no. c, pp. 49460\u201349475, 2018, https:\/\/doi.org\/10.1109\/ACCESS.2018.2868990","DOI":"10.1109\/ACCESS.2018.2868990"},{"key":"3325_CR88","doi-asserted-by":"publisher","unstructured":"Xu S, Sivaraman A, Khoo SC, Xu J. GEMS: An Extract Method Refactoring Recommender, Proc. - Int. Symp. Softw. Reliab. Eng. ISSRE, vol. 2017-Octob, no. October, pp. 24\u201334, 2017, https:\/\/doi.org\/10.1109\/ISSRE.2017.35","DOI":"10.1109\/ISSRE.2017.35"},{"key":"3325_CR89","doi-asserted-by":"publisher","unstructured":"Liu H, Xu Z, Zou Y. Deep learning based feature envy detection, ASE 2018 - Proc. 33rd ACM\/IEEE Int. Conf. Autom. Softw. Eng., pp. 385\u2013396, 2018, https:\/\/doi.org\/10.1145\/3238147.3238166","DOI":"10.1145\/3238147.3238166"},{"key":"3325_CR90","doi-asserted-by":"publisher","unstructured":"Nembhard FD, Carvalho MM, Eskridge TC. Towards the application of recommender systems to secure coding, Eurasip J. Inf. Secur., vol. 2019, no. 1, 2019, https:\/\/doi.org\/10.1186\/s13635-019-0092-4","DOI":"10.1186\/s13635-019-0092-4"},{"key":"3325_CR91","doi-asserted-by":"crossref","unstructured":"Ikegami A, et al. On the Use of Refactoring in Security vulnerability fixes: an exploratory study on Maven libraries. Volume 1. Association for Computing Machinery; 2022. p. 1.","DOI":"10.1145\/3530019.3535304"},{"key":"3325_CR92","doi-asserted-by":"publisher","first-page":"103121","DOI":"10.1016\/j.cose.2023.103121","volume":"128","author":"F Schuckert","year":"2023","unstructured":"Schuckert F, Katt B, Langweg H. Insecurity Refactoring: Automated Injection of vulnerabilities in Source Code. Comput Secur. 2023;128:103121. https:\/\/doi.org\/10.1016\/j.cose.2023.103121.","journal-title":"Comput Secur"},{"issue":"7","key":"3325_CR93","first-page":"5","volume":"14","author":"M Alenezi","year":"2016","unstructured":"Alenezi M, Javed Y. Developer companion: a Framework to produce secure web applications. Int J Comput Sci Inf Secur. 2016;14(7):5.","journal-title":"Int J Comput Sci Inf Secur"},{"key":"3325_CR94","doi-asserted-by":"publisher","unstructured":"Silva D, Terra R, Valente MT. Recommending automated extract method refactorings, 22nd Int. Conf. Progr. Comprehension, ICPC 2014 - Proc., pp. 146\u2013156, 2014, https:\/\/doi.org\/10.1145\/2597008.2597141","DOI":"10.1145\/2597008.2597141"},{"key":"3325_CR95","unstructured":"Silva D, Terra R, Valente MT. JExtract: An Eclipse Plug-in for Recommending Automated Extract Method Refactorings, 2015, [Online]. Available: http:\/\/arxiv.org\/abs\/1506.06086"},{"key":"3325_CR96","doi-asserted-by":"publisher","unstructured":"Nembhard F, Carvalho M, Eskridge T. Extracting Knowledge from Open Source Projects to Improve Program Security, Conf. Proc. - IEEE SOUTHEASTCON, vol. 2018-April, no. April, 2018, https:\/\/doi.org\/10.1109\/SECON.2018.8478906","DOI":"10.1109\/SECON.2018.8478906"},{"issue":"7","key":"3325_CR97","doi-asserted-by":"publisher","first-page":"641","DOI":"10.1109\/TSE.2016.2616306","volume":"43","author":"DA Da Costa","year":"2017","unstructured":"Da Costa DA, McIntosh S, Shang W, Kulesza U, Coelho R, Hassan AE. A Framework for evaluating the results of the SZZ Approach for identifying bug-introducing changes. IEEE Trans Softw Eng. 2017;43(7):641\u201357. https:\/\/doi.org\/10.1109\/TSE.2016.2616306.","journal-title":"IEEE Trans Softw Eng"},{"key":"3325_CR98","doi-asserted-by":"publisher","DOI":"10.1007\/s10515-021-00281-2","author":"C Abid","year":"2021","unstructured":"Abid C, Alizadeh V, Kessentini M, Dhaouadi M. Prioritizing refactorings for security-critical code. Autom Softw Eng. 2021. https:\/\/doi.org\/10.1007\/s10515-021-00281-2.","journal-title":"Autom Softw Eng"},{"key":"3325_CR99","unstructured":"Shafiq S, Assuncao W, Mashkoor A, Mayr-Dorn C, Egyed A. Towards recommending Refactoring Operations based on bugs, 15, 2, pp. 14\u201321, 2020."}],"container-title":["SN Computer Science"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-024-03325-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s42979-024-03325-y\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s42979-024-03325-y.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,10,12]],"date-time":"2024-10-12T08:17:56Z","timestamp":1728721076000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s42979-024-03325-y"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,10,12]]},"references-count":99,"journal-issue":{"issue":"7","published-online":{"date-parts":[[2024,10]]}},"alternative-id":["3325"],"URL":"https:\/\/doi.org\/10.1007\/s42979-024-03325-y","relation":{},"ISSN":["2661-8907"],"issn-type":[{"value":"2661-8907","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,10,12]]},"assertion":[{"value":"8 October 2023","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"20 September 2024","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"12 October 2024","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Declarations"}},{"value":"This article does not contain any studies with human participants or animals performed by any of the authors.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethics Approval"}},{"value":"The authors declare that they have no conflict of interest.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of Interest"}}],"article-number":"952"}}