{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,9,28]],"date-time":"2025-09-28T20:43:44Z","timestamp":1759092224058,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":15,"publisher":"ACM","license":[{"start":{"date-parts":[[2011,12,5]],"date-time":"2011-12-05T00:00:00Z","timestamp":1323043200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2011,12,5]]},"DOI":"10.1145\/2095536.2095590","type":"proceedings-article","created":{"date-parts":[[2012,1,17]],"date-time":"2012-01-17T17:20:41Z","timestamp":1326820841000},"page":"305-310","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["Software security for small development teams"],"prefix":"10.1145","author":[{"given":"Michael","family":"Kainerstorfer","sequence":"first","affiliation":[{"name":"Aumayr GmbH, Steyregg, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Johannes","family":"Sametinger","sequence":"additional","affiliation":[{"name":"Johannes Kepler University, Linz, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andreas","family":"Wiesauer","sequence":"additional","affiliation":[{"name":"Johannes Kepler University, Linz, Austria"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2011,12,5]]},"reference":[{"unstructured":"Sommerville I. 2007. Software Engineering 8th edition Addison-Wesley.   Sommerville I. 2007. Software Engineering 8 th edition Addison-Wesley.","key":"e_1_3_2_1_1_1"},{"unstructured":"Kent Beck Cynthia Andres. Extreme Programming Explained: Embrace Change. Addison-Wesley Professional; 2 Edition 2004.   Kent Beck Cynthia Andres. Extreme Programming Explained: Embrace Change. Addison-Wesley Professional; 2 Edition 2004.","key":"e_1_3_2_1_2_1"},{"volume-title":"Addison-Wesley Longman","year":"2004","author":"Alistair Cockburn","key":"e_1_3_2_1_3_1"},{"volume-title":"Addison-Wesley Longman","year":"2009","author":"Mike Cohn","key":"e_1_3_2_1_4_1"},{"unstructured":"Boehm B. and Turner R. 2004. Balancing Agility and Discipline Addison-Wesley.   Boehm B. and Turner R. 2004. Balancing Agility and Discipline Addison-Wesley.","key":"e_1_3_2_1_5_1"},{"unstructured":"Swiderski F. and Snyder W. 2004. Threat Modeling Microsoft Press.   Swiderski F. and Snyder W. 2004. Threat Modeling Microsoft Press.","key":"e_1_3_2_1_6_1"},{"unstructured":"Microsoft 2011. The Microsoft SDL www.microsoft.com\/security\/sdl  Microsoft 2011. The Microsoft SDL www.microsoft.com\/security\/sdl","key":"e_1_3_2_1_7_1"},{"unstructured":"OWASP. 2007. OWASP CLASP v1.2. Comprehensive Lightweight Application Security Process.  OWASP. 2007. OWASP CLASP v1.2. Comprehensive Lightweight Application Security Process .","key":"e_1_3_2_1_8_1"},{"key":"e_1_3_2_1_9_1","volume-title":"Software Security: Building Security In","author":"McGraw G.","year":"2009","edition":"5"},{"key":"e_1_3_2_1_10_1","first-page":"5","author":"Microsoft","year":"2010","journal-title":"Security Development LifeCycle"},{"unstructured":"Howard M. Lipner S. 2006. The Security Development Life-cycle Microsoft Press.   Howard M. Lipner S. 2006. The Security Development Life-cycle Microsoft Press.","key":"e_1_3_2_1_11_1"},{"unstructured":"Curphey M. Scambray J. Olson E. 2003. Improving Web Application Security: Threats and Countermeasures Microsoft Press.  Curphey M. Scambray J. Olson E. 2003. Improving Web Application Security: Threats and Countermeasures Microsoft Press.","key":"e_1_3_2_1_12_1"},{"unstructured":"Howard M. LeBlanc D. 2003. Writing Secure Code Microsoft Press.   Howard M. LeBlanc D. 2003. Writing Secure Code Microsoft Press.","key":"e_1_3_2_1_13_1"},{"unstructured":"Microsoft. Improving Web Application Security: Threats and Countermeasures http:\/\/msdn.microsoft.com\/enus\/library\/ff649874.aspx  Microsoft. Improving Web Application Security: Threats and Countermeasures http:\/\/msdn.microsoft.com\/enus\/library\/ff649874.aspx","key":"e_1_3_2_1_14_1"},{"volume-title":"Uncover Security Design Flaws Using The STRIDE Approach. MSDN Magazine","year":"2006","author":"Hernan S.","key":"e_1_3_2_1_15_1"}],"event":{"acronym":"MoMM '11","name":"MoMM '11: The 9th International Conference on Advances in Mobile Computing & Multimedia","location":"Ho Chi Minh City Vietnam"},"container-title":["Proceedings of the 13th International Conference on Information Integration and Web-based Applications and Services"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2095536.2095590","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2095536.2095590","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T09:54:39Z","timestamp":1750240479000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2095536.2095590"}},"subtitle":["a case study"],"short-title":[],"issued":{"date-parts":[[2011,12,5]]},"references-count":15,"alternative-id":["10.1145\/2095536.2095590","10.1145\/2095536"],"URL":"https:\/\/doi.org\/10.1145\/2095536.2095590","relation":{},"subject":[],"published":{"date-parts":[[2011,12,5]]},"assertion":[{"value":"2011-12-05","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}