{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,4]],"date-time":"2025-09-04T13:38:00Z","timestamp":1756993080155,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":15,"publisher":"ACM","license":[{"start":{"date-parts":[[2007,10,29]],"date-time":"2007-10-29T00:00:00Z","timestamp":1193616000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2007,10,29]]},"DOI":"10.1145\/1314257.1314260","type":"proceedings-article","created":{"date-parts":[[2007,11,15]],"date-time":"2007-11-15T14:30:20Z","timestamp":1195137020000},"page":"1-5","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":13,"title":["Effect of static analysis tools on software security"],"prefix":"10.1145","author":[{"given":"Vadim","family":"Okun","sequence":"first","affiliation":[{"name":"National Institute of Standards and Technology, Gaithersburg, MD"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"William F.","family":"Guthrie","sequence":"additional","affiliation":[{"name":"National Institute of Standards and Technology, Gaithersburg, MD"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Romain","family":"Gaucher","sequence":"additional","affiliation":[{"name":"National Institute of Standards and Technology, Gaithersburg, MD"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Paul E.","family":"Black","sequence":"additional","affiliation":[{"name":"National Institute of Standards and Technology, Gaithersburg, MD"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2007,10,29]]},"reference":[{"unstructured":"Accelerating Open Source Quality http:\/\/scan.coverity.com\/  Accelerating Open Source Quality http:\/\/scan.coverity.com\/","key":"e_1_3_2_1_1_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_2_1","DOI":"10.1007\/11535706_21"},{"doi-asserted-by":"crossref","unstructured":"P.E. Black M. Kass and M. Koo Source code security analysis tool functional specification version 1.0 NIST SP 500-268 May 2007.  P.E. Black M. Kass and M. Koo Source code security analysis tool functional specification version 1.0 NIST SP 500-268 May 2007.","key":"e_1_3_2_1_3_1","DOI":"10.6028\/NIST.SP.500-268"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_4_1","DOI":"10.1109\/MSP.2004.111"},{"unstructured":"CVE - Common Vulnerabilities and Exposures The MITRE Corp. http:\/\/cve.mitre.org\/  CVE - Common Vulnerabilities and Exposures The MITRE Corp. http:\/\/cve.mitre.org\/","key":"e_1_3_2_1_5_1"},{"unstructured":"D. Engler Weird things that surprise academics trying to commercialize a static checking tool http:\/\/www.stanford.edu\/~engler\/spin05-coverity.pdf  D. Engler Weird things that surprise academics trying to commercialize a static checking tool http:\/\/www.stanford.edu\/~engler\/spin05-coverity.pdf","key":"e_1_3_2_1_6_1"},{"unstructured":"C. Frye Klocwork static analysis tool proves its worth finds bugs in open source projects SearchSoftwareQuality.com June 2006.  C. Frye Klocwork static analysis tool proves its worth finds bugs in open source projects SearchSoftwareQuality.com June 2006.","key":"e_1_3_2_1_7_1"},{"unstructured":"Java Open Review Project Fortify Software http:\/\/opensource.fortifysoftware.com\/  Java Open Review Project Fortify Software http:\/\/opensource.fortifysoftware.com\/","key":"e_1_3_2_1_8_1"},{"unstructured":"S. M. Kerner Study: MySQL Hard on Defects Internetnews.com Feb. 2005.  S. M. Kerner Study: MySQL Hard on Defects Internetnews.com Feb. 2005.","key":"e_1_3_2_1_9_1"},{"unstructured":"G. McGraw Software security Addison-Wesley 2006.   G. McGraw Software security Addison-Wesley 2006.","key":"e_1_3_2_1_10_1"},{"unstructured":"National Vulnerability Database NIST http:\/\/nvd.nist.gov\/  National Vulnerability Database NIST http:\/\/nvd.nist.gov\/","key":"e_1_3_2_1_11_1"},{"volume-title":"2006 Usenix Security Symposium","year":"2006","author":"Ozment A.","key":"e_1_3_2_1_12_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_13_1","DOI":"10.1109\/ISSRE.2004.1"},{"unstructured":"SecurityFocus http:\/\/www.securityfocus.com\/vulnerabilities  SecurityFocus http:\/\/www.securityfocus.com\/vulnerabilities","key":"e_1_3_2_1_14_1"},{"doi-asserted-by":"publisher","key":"e_1_3_2_1_15_1","DOI":"10.1109\/TSE.2006.38"}],"event":{"sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control","ACM Association for Computing Machinery"],"acronym":"CCS07","name":"CCS07: 14th ACM Conference on Computer and Communications Security 2007","location":"Alexandria Virginia USA"},"container-title":["Proceedings of the 2007 ACM workshop on Quality of protection"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1314257.1314260","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1314257.1314260","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T15:14:06Z","timestamp":1750259646000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1314257.1314260"}},"subtitle":["preliminary investigation"],"short-title":[],"issued":{"date-parts":[[2007,10,29]]},"references-count":15,"alternative-id":["10.1145\/1314257.1314260","10.1145\/1314257"],"URL":"https:\/\/doi.org\/10.1145\/1314257.1314260","relation":{},"subject":[],"published":{"date-parts":[[2007,10,29]]},"assertion":[{"value":"2007-10-29","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}