{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,13]],"date-time":"2026-02-13T23:14:03Z","timestamp":1771024443568,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":56,"publisher":"ACM","license":[{"start":{"date-parts":[[2020,10,7]],"date-time":"2020-10-07T00:00:00Z","timestamp":1602028800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2020,10,7]]},"DOI":"10.1145\/3368308.3415419","type":"proceedings-article","created":{"date-parts":[[2020,10,8]],"date-time":"2020-10-08T02:32:55Z","timestamp":1602124375000},"page":"403-408","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":13,"title":["CryptoTutor"],"prefix":"10.1145","author":[{"given":"Larry","family":"Singleton","sequence":"first","affiliation":[{"name":"Mutual of Omaha Insurance Company, Omaha, NE, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rui","family":"Zhao","sequence":"additional","affiliation":[{"name":"University of Nebraska at Omaha, Omaha, NE, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Myoungkyu","family":"Song","sequence":"additional","affiliation":[{"name":"University of Nebraska at Omaha, Omaha, NE, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Harvey","family":"Siy","sequence":"additional","affiliation":[{"name":"University of Nebraska at Omaha, Omaha, NE, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2020,10,7]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Channel praises Microsoft plan to \"stigmatize\" software pirates. CRN.com","author":"Rooney P","year":"2005","unstructured":"P Rooney . Channel praises Microsoft plan to \"stigmatize\" software pirates. CRN.com , 2005 . P Rooney. Channel praises Microsoft plan to \"stigmatize\" software pirates. CRN.com, 2005."},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516693"},{"key":"e_1_3_2_1_3_1","volume-title":"Citi discloses security flaw in its iphone app, spencer e. ante","author":"Street Journal The Wall","year":"2010","unstructured":"The Wall Street Journal , Citi discloses security flaw in its iphone app, spencer e. ante , 2010 . The Wall Street Journal, Citi discloses security flaw in its iphone app, spencer e. ante, 2010."},{"key":"e_1_3_2_1_4_1","volume-title":"Vrizlynn LL Thing, et al. Securing android: a survey, taxonomy, and challenges. ACM Computing Surveys (CSUR), 47(4):58","author":"Tan Darell JJ","year":"2015","unstructured":"Darell JJ Tan , Tong-Wei Chua , Vrizlynn LL Thing, et al. Securing android: a survey, taxonomy, and challenges. ACM Computing Surveys (CSUR), 47(4):58 , 2015 . Darell JJ Tan, Tong-Wei Chua, Vrizlynn LL Thing, et al. Securing android: a survey, taxonomy, and challenges. ACM Computing Surveys (CSUR), 47(4):58, 2015."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/2078856.2078860"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2013.155"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/2766457"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/3159450.3159534"},{"key":"e_1_3_2_1_9_1","volume-title":"An intelligent tutoring system for learning classical cryptography algorithms (ccaits)","author":"AbuEl-Reesh Jihan Y","year":"2018","unstructured":"Jihan Y AbuEl-Reesh and Samy S Abu-Naser . An intelligent tutoring system for learning classical cryptography algorithms (ccaits) . International Journal of Academic and Applied Research (IJAAR) , 2(2), 2018 . Jihan Y AbuEl-Reesh and Samy S Abu-Naser. An intelligent tutoring system for learning classical cryptography algorithms (ccaits). International Journal of Academic and Applied Research (IJAAR), 2(2), 2018."},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2018.09.009"},{"key":"e_1_3_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/3160489.3160492"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/2884781.2884790"},{"key":"e_1_3_2_1_13_1","unstructured":"JCA\n  : Java Cryptography Architecture: https:\/\/docs.oracle.com\/javase\/10\/security\/java-cryptography-architecture-jca-reference-guide.htm.  JCA: Java Cryptography Architecture: https:\/\/docs.oracle.com\/javase\/10\/security\/java-cryptography-architecture-jca-reference-guide.htm."},{"key":"e_1_3_2_1_14_1","volume-title":"SEED: Developing instructional laboratories for computer SEcurity EDucation. https:\/\/seedsecuritylabs.org\/index.html","author":"Du Wenliang","year":"2019","unstructured":"Wenliang Du . SEED: Developing instructional laboratories for computer SEcurity EDucation. https:\/\/seedsecuritylabs.org\/index.html , 2019 . Wenliang Du. SEED: Developing instructional laboratories for computer SEcurity EDucation. https:\/\/seedsecuritylabs.org\/index.html, 2019."},{"key":"e_1_3_2_1_15_1","volume-title":"SEED: A suite of instructional laboratories for computer security education. jeric, 8(1):3","author":"Du Wenliang","year":"2008","unstructured":"Wenliang Du and Ronghua Wang . SEED: A suite of instructional laboratories for computer security education. jeric, 8(1):3 , 2008 . Wenliang Du and Ronghua Wang. SEED: A suite of instructional laboratories for computer security education. jeric, 8(1):3, 2008."},{"key":"e_1_3_2_1_16_1","unstructured":"Li-Chiou Chen. SWEET: Secure WEb dEvelopment Teaching. http:\/\/csis.pace.edu\/ lchen\/sweet\/ 2019.  Li-Chiou Chen. SWEET: Secure WEb dEvelopment Teaching. http:\/\/csis.pace.edu\/ lchen\/sweet\/ 2019."},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of the Americas Conference on Information Systems (AMCIS)","author":"Chen Li-Chiou","year":"2010","unstructured":"Li-Chiou Chen . Secure web development teaching modules . In Proceedings of the Americas Conference on Information Systems (AMCIS) , 2010 . Li-Chiou Chen. Secure web development teaching modules. In Proceedings of the Americas Conference on Information Systems (AMCIS), 2010."},{"key":"e_1_3_2_1_18_1","unstructured":"Blair Taylor. Security injections @ towson. http:\/\/towson.edu\/securityinjections 2019.  Blair Taylor. Security injections @ towson. http:\/\/towson.edu\/securityinjections 2019."},{"key":"e_1_3_2_1_19_1","volume-title":"Security injections@ towson: Integrating secure coding into introductory computer science courses. toce, 16(4):16","author":"Taylor Blair","year":"2016","unstructured":"Blair Taylor and Siddharth Kaza . Security injections@ towson: Integrating secure coding into introductory computer science courses. toce, 16(4):16 , 2016 . Blair Taylor and Siddharth Kaza. Security injections@ towson: Integrating secure coding into introductory computer science courses. toce, 16(4):16, 2016."},{"key":"e_1_3_2_1_20_1","volume-title":"Computer science curricula","author":"ACM\/IEEE-CS Joint Task Force on Computing Curricula.","year":"2013","unstructured":"ACM\/IEEE-CS Joint Task Force on Computing Curricula. Computer science curricula 2013 . Technical report, ACM Press and IEEE Computer Society Press , December 2013. ACM\/IEEE-CS Joint Task Force on Computing Curricula. Computer science curricula 2013. Technical report, ACM Press and IEEE Computer Society Press, December 2013."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.5555\/2600623.2600641"},{"key":"e_1_3_2_1_22_1","volume-title":"Proceedings of the 2014 HUIC Education and STEM Conference","author":"Chung Sam","year":"2014","unstructured":"Sam Chung , Leo Hansel , Yan Bai , Elizabeth Moore , Carol Taylor , Martha Crosby , Rachelle Heller , Viatcheslav Popovsky , and Barbara Endicott-Popovsky . What approaches work best for teaching secure coding practices . In Proceedings of the 2014 HUIC Education and STEM Conference , 2014 . Sam Chung, Leo Hansel, Yan Bai, Elizabeth Moore, Carol Taylor, Martha Crosby, Rachelle Heller, Viatcheslav Popovsky, and Barbara Endicott-Popovsky. What approaches work best for teaching secure coding practices. In Proceedings of the 2014 HUIC Education and STEM Conference, 2014."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/2157136.2157304"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/2528908.2528911"},{"issue":"2","key":"e_1_3_2_1_25_1","first-page":"89","article-title":"Motivating secure coding practices in a freshman-level programming course","volume":"1","author":"Payne Bryson R","year":"2014","unstructured":"Bryson R Payne and Aaron R Walker . Motivating secure coding practices in a freshman-level programming course . Information Security Education Journal , 1 ( 2 ): 89 -- 108 , 2014 . Bryson R Payne and Aaron R Walker. Motivating secure coding practices in a freshman-level programming course. Information Security Education Journal, 1(2):89--108, 2014.","journal-title":"Information Security Education Journal"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.14569\/IJACSA.2018.090661"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1109\/FIE.2018.8659217"},{"key":"e_1_3_2_1_28_1","volume-title":"https:\/\/owasp.org\/www-project-top-ten\/","author":"Top Ten OWASP","year":"2019","unstructured":"OWASP Top Ten . https:\/\/owasp.org\/www-project-top-ten\/ , 2019 . OWASP Top Ten. https:\/\/owasp.org\/www-project-top-ten\/, 2019."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/1052883.1052895"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/52.976940"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/ISNCC.2018.8531071"},{"key":"e_1_3_2_1_32_1","volume-title":"https:\/\/find-sec-bugs.github.io\/","year":"2019","unstructured":"FindSecurityBugs. https:\/\/find-sec-bugs.github.io\/ , 2019 . FindSecurityBugs. https:\/\/find-sec-bugs.github.io\/, 2019."},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2018.2827384"},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-11698-3_27"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/DASC.2014.22"},{"key":"e_1_3_2_1_36_1","volume-title":"Cryptoguard: High precision detection of cryptographic vulnerabilities in massive-sized java projects","author":"Rahaman Sazzadur","year":"2018","unstructured":"Sazzadur Rahaman , Ya Xiao , Sharmin Afrose , Fahad Shaon , Ke Tian , Miles Frantz , Danfeng, Yao, and Murat Kantarcioglu . Cryptoguard: High precision detection of cryptographic vulnerabilities in massive-sized java projects . 2018 . Sazzadur Rahaman, Ya Xiao, Sharmin Afrose, Fahad Shaon, Ke Tian, Miles Frantz, Danfeng, Yao, and Murat Kantarcioglu. Cryptoguard: High precision detection of cryptographic vulnerabilities in massive-sized java projects. 2018."},{"key":"e_1_3_2_1_37_1","volume-title":"https:\/\/codereview.stackexchange.com\/questions\/196513\/java-aes-file-encryption-decryption","author":"Java AES","year":"2020","unstructured":"Java AES file encryption\/decryption. https:\/\/codereview.stackexchange.com\/questions\/196513\/java-aes-file-encryption-decryption , 2020 . Java AES file encryption\/decryption. https:\/\/codereview.stackexchange.com\/questions\/196513\/java-aes-file-encryption-decryption, 2020."},{"key":"e_1_3_2_1_38_1","unstructured":"Which is the best AES mode of operation? https:\/\/crypto.stackexchange.com\/questions\/74324\/which-is-the-best-aes-mode-of-operation 2020.  Which is the best AES mode of operation? https:\/\/crypto.stackexchange.com\/questions\/74324\/which-is-the-best-aes-mode-of-operation 2020."},{"key":"e_1_3_2_1_39_1","unstructured":"AES Encryption is this overcomplicated encryption? https:\/\/security.stackexchange.com\/questions\/200145\/aes-encryption-is-this-overcomplicated-encryption 2020.  AES Encryption is this overcomplicated encryption? https:\/\/security.stackexchange.com\/questions\/200145\/aes-encryption-is-this-overcomplicated-encryption 2020."},{"key":"e_1_3_2_1_40_1","unstructured":"Is AES in CBC mode secure if a known and\/or fixed IV is used? https:\/\/crypto.stackexchange.com\/questions\/5094\/is-aes-in-cbc-mode-secure-if-a-known-and-or-fixed-iv-is-used 2020.  Is AES in CBC mode secure if a known and\/or fixed IV is used? https:\/\/crypto.stackexchange.com\/questions\/5094\/is-aes-in-cbc-mode-secure-if-a-known-and-or-fixed-iv-is-used 2020."},{"key":"e_1_3_2_1_41_1","unstructured":"How to create symmetric encryption key with Google Tink? https:\/\/stackoverflow.com\/questions\/52171198\/how-to-create-symmetric-encryption-key-with-google-tink 2020.  How to create symmetric encryption key with Google Tink? https:\/\/stackoverflow.com\/questions\/52171198\/how-to-create-symmetric-encryption-key-with-google-tink 2020."},{"key":"e_1_3_2_1_42_1","volume-title":"https:\/\/codereview.stackexchange.com\/questions\/204014\/secure-random-password-generator","author":"Secure","year":"2020","unstructured":"Secure random password generator. https:\/\/codereview.stackexchange.com\/questions\/204014\/secure-random-password-generator , 2020 . Secure random password generator. https:\/\/codereview.stackexchange.com\/questions\/204014\/secure-random-password-generator, 2020."},{"key":"e_1_3_2_1_43_1","volume-title":"Cryptography and Network Security: Principles and Practice","author":"Stallings William","year":"2013","unstructured":"William Stallings . Cryptography and Network Security: Principles and Practice . Prentice Hall Press , 6 th edition, 2013 . William Stallings. Cryptography and Network Security: Principles and Practice. Prentice Hall Press, 6th edition, 2013.","edition":"6"},{"key":"e_1_3_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978423"},{"key":"e_1_3_2_1_45_1","first-page":"430","volume-title":"Proc. of AICC","author":"Coron Jean-S\u00e9bastien","year":"2005","unstructured":"Jean-S\u00e9bastien Coron , Yevgeniy Dodis , C\u00e9cile Malinaud , and Prashant Puniya . Merkle-damg \u00e5rd revisited : How to construct a hash function . In Proc. of AICC , pages 430 -- 448 , 2005 . Jean-S\u00e9bastien Coron, Yevgeniy Dodis, C\u00e9cile Malinaud, and Prashant Puniya. Merkle-damg\u00e5rd revisited: How to construct a hash function. In Proc. of AICC, pages 430--448, 2005."},{"key":"e_1_3_2_1_46_1","volume-title":"A new pseudo-random number generator. Journal of the ACM (JACM), 7(1):75--77","author":"Rotenberg A","year":"1960","unstructured":"A Rotenberg . A new pseudo-random number generator. Journal of the ACM (JACM), 7(1):75--77 , 1960 . A Rotenberg. A new pseudo-random number generator. Journal of the ACM (JACM), 7(1):75--77, 1960."},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-71817-0_4"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1007\/11523468_54"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.5120\/11507-7224"},{"key":"e_1_3_2_1_50_1","volume-title":"Cryptography & network security","author":"Forouzan Behrouz A","year":"2007","unstructured":"Behrouz A Forouzan . Cryptography & network security . McGraw-Hill, Inc. , 2007 . Behrouz A Forouzan. Cryptography & network security. McGraw-Hill, Inc., 2007."},{"key":"e_1_3_2_1_51_1","unstructured":"RFC 2898: PKCS #5: Password-based cryptography specification. https:\/\/www.ietf.org\/rfc\/rfc2898.txt.  RFC 2898: PKCS #5: Password-based cryptography specification. https:\/\/www.ietf.org\/rfc\/rfc2898.txt."},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1145\/77606.77608"},{"key":"e_1_3_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1145\/2656450.2656479"},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1145\/3328778.3372683"},{"key":"e_1_3_2_1_55_1","volume-title":"https:\/\/apcentral.collegeboard.org\/courses\/ap-computer-science-a","author":"Computer AP","year":"2020","unstructured":"AP Computer Science A. https:\/\/apcentral.collegeboard.org\/courses\/ap-computer-science-a , 2020 . AP Computer Science A. https:\/\/apcentral.collegeboard.org\/courses\/ap-computer-science-a, 2020."},{"key":"e_1_3_2_1_56_1","volume-title":"After the exam. https:\/\/apcentral.collegeboard.org\/series\/strategies-for-teaching-ap-computer-science\/after-the-exam","author":"Computer Strategies","year":"2020","unstructured":"Strategies for teaching AP Computer Science A : After the exam. https:\/\/apcentral.collegeboard.org\/series\/strategies-for-teaching-ap-computer-science\/after-the-exam , 2020 . Strategies for teaching AP Computer Science A: After the exam. https:\/\/apcentral.collegeboard.org\/series\/strategies-for-teaching-ap-computer-science\/after-the-exam, 2020."}],"event":{"name":"SIGITE '20: The 21st Annual Conference on Information Technology Education","location":"Virtual Event USA","acronym":"SIGITE '20","sponsor":["SIGITE ACM Special Interest Group on Information Technology Education"]},"container-title":["Proceedings of the 21st Annual Conference on Information Technology Education"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3368308.3415419","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3368308.3415419","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T22:02:06Z","timestamp":1750197726000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3368308.3415419"}},"subtitle":["Teaching Secure Coding Practices through Misuse Pattern Detection"],"short-title":[],"issued":{"date-parts":[[2020,10,7]]},"references-count":56,"alternative-id":["10.1145\/3368308.3415419","10.1145\/3368308"],"URL":"https:\/\/doi.org\/10.1145\/3368308.3415419","relation":{},"subject":[],"published":{"date-parts":[[2020,10,7]]},"assertion":[{"value":"2020-10-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}