{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,17]],"date-time":"2026-07-17T03:50:37Z","timestamp":1784260237924,"version":"3.55.0"},"publisher-location":"New York, NY, USA","reference-count":21,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,8,23]],"date-time":"2022-08-23T00:00:00Z","timestamp":1661212800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"name":"European Union H2020","award":["952647"],"award-info":[{"award-number":["952647"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,8,23]]},"DOI":"10.1145\/3538969.3543807","type":"proceedings-article","created":{"date-parts":[[2022,8,17]],"date-time":"2022-08-17T23:41:40Z","timestamp":1660779700000},"page":"1-7","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":8,"title":["Towards a Security Benchmark for the Architectural Design of Microservice Applications"],"prefix":"10.1145","author":[{"given":"Anusha","family":"Bambhore Tukaram","sequence":"first","affiliation":[{"name":"Hamburg University of Technology, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Simon","family":"Schneider","sequence":"additional","affiliation":[{"name":"Hamburg University of Technology, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Nicol\u00e1s E.","family":"D\u00edaz Ferreyra","sequence":"additional","affiliation":[{"name":"Hamburg University of Technology, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Georg","family":"Simhandl","sequence":"additional","affiliation":[{"name":"University of Vienna, Austria"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Uwe","family":"Zdun","sequence":"additional","affiliation":[{"name":"University of Vienna, Austria"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Riccardo","family":"Scandariato","sequence":"additional","affiliation":[{"name":"Hamburg University of Technology, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2022,8,23]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE.2013.6606612"},{"key":"e_1_3_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/1858996.1859001"},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/3106237.3122823"},{"key":"e_1_3_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.infsof.2008.05.011"},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"crossref","unstructured":"Davide Berardi Saverio Giallorenzo Jacopo Mauro Andrea Melis Fabrizio Montesi and Marco Prandini. 2022. Microservice security: a systematic literature review. PeerJ Computer Science(2022).","DOI":"10.7717\/peerj-cs.779"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"publisher","unstructured":"Bernhard Berger Karsten Sohr and Rainer Koschke. 2016. Automatically Extracting Threats from Extended Data Flow Diagrams Vol.\u00a09639. 56\u201371. https:\/\/doi.org\/10.1007\/978-3-319-30806-7_4","DOI":"10.1007\/978-3-319-30806-7_4"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","unstructured":"Bernhard Berger Karsten Sohr and Rainer Koschke. 2019. The Architectural Security Tool Suite \u2014 ARCHSEC. 250\u2013255. https:\/\/doi.org\/10.1109\/SCAM.2019.00035","DOI":"10.1109\/SCAM.2019.00035"},{"key":"e_1_3_2_1_8_1","volume-title":"Perspective on Challenges and Best Practices. arXiv:2202.01612","author":"Billawa Priyanka","year":"2022","unstructured":"Priyanka Billawa, Anusha\u00a0Bambhore Tukaram, Nicol\u00e1s E.\u00a0D\u00edaz Ferreyra, Jan-Philipp Stegh\u00f6fer, Riccardo Scandariato, and Georg Simhandl. 2022. Security of Microservice Applications: A Practitioners\u2019 Perspective on Challenges and Best Practices. arXiv:2202.01612 (2022)."},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2021.100415"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSA47634.2020.00012"},{"key":"e_1_3_2_1_11_1","volume-title":"Secure Systems Development with UML","author":"J\u00fcrjens Jan","unstructured":"Jan J\u00fcrjens. 2010. Secure Systems Development with UML. Springer-Verlag, Berlin, Heidelberg."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-45800-X_33"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/CLEI47609.2019.235060"},{"key":"e_1_3_2_1_14_1","volume-title":"Smells and Refactorings for Microservices Security: A Multivocal Literature Review. arXiv:2104.13303","author":"Ponce Francisco","year":"2021","unstructured":"Francisco Ponce, Jacopo Soldani, Hern\u00e1n Astudillo, and Antonio Brogi. 2021. Smells and Refactorings for Microservices Security: A Multivocal Literature Review. arXiv:2104.13303 (2021)."},{"key":"e_1_3_2_1_15_1","volume-title":"In Workshop on Software Security Assurance Tools, Techniques, and Metrics.","author":"Ren Jie","year":"2005","unstructured":"Jie Ren and Richard\u00a0N. Taylor. 2005. A Secure Software Architecture Description Language. In In Workshop on Software Security Assurance Tools, Techniques, and Metrics."},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","unstructured":"Bradley Schmerl Jeff Gennari Alireza Sadeghi Hamid Bagheri Sam Malek Javier C\u00e1mara and David Garlan. 2016. Architecture Modeling and Analysis of Security in Android Systems. 274\u2013290. https:\/\/doi.org\/10.1007\/978-3-319-48992-6_21","DOI":"10.1007\/978-3-319-48992-6_21"},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSA.2019.00009"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSA-C.2018.00032"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.jss.2018.09.082"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICSA.2019.00028"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1109\/SOSE.2018.00011"}],"event":{"name":"ARES 2022: The 17th International Conference on Availability, Reliability and Security","location":"Vienna Austria","acronym":"ARES 2022"},"container-title":["Proceedings of the 17th International Conference on Availability, Reliability and Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3538969.3543807","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3538969.3543807","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T18:59:57Z","timestamp":1750186797000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3538969.3543807"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,8,23]]},"references-count":21,"alternative-id":["10.1145\/3538969.3543807","10.1145\/3538969"],"URL":"https:\/\/doi.org\/10.1145\/3538969.3543807","relation":{},"subject":[],"published":{"date-parts":[[2022,8,23]]},"assertion":[{"value":"2022-08-23","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}