{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,22]],"date-time":"2026-07-22T04:49:49Z","timestamp":1784695789008,"version":"3.55.0"},"reference-count":91,"publisher":"Association for Computing Machinery (ACM)","issue":"12","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Comput. Surv."],"published-print":{"date-parts":[[2025,12,31]]},"abstract":"<jats:p>Security Application Programming Interfaces (APIs) are crucial for ensuring software security. However, their misuse introduces vulnerabilities, potentially leading to severe data breaches and substantial financial loss. Complex API design, inadequate documentation, and insufficient security training often lead to unintentional misuse by developers. The software security community has devised and evaluated several approaches to detecting security API misuse to help developers and organizations. This study rigorously reviews the literature on detecting misuse of security APIs to gain a comprehensive understanding of this critical domain. Our goal is to identify and analyze security API misuses, the detection approaches developed, and the evaluation methodologies employed along with the open research avenues to advance the state-of-the-art in this area. Employing the systematic literature review (SLR) methodology, we analyzed 69 research articles. Our review has yielded (a) identification of 6 security API types; (b) classification of 30 distinct misuses; (c) categorization of detection techniques into heuristic-based and ML-based approaches; and (d) identification of 10 performance measures and 9 evaluation benchmarks. The review reveals a lack of coverage of detection approaches in several areas. We recommend that future efforts focus on aligning security API development with developers\u2019 needs and advancing standardized evaluation methods for detection technologies.<\/jats:p>","DOI":"10.1145\/3735968","type":"journal-article","created":{"date-parts":[[2025,5,15]],"date-time":"2025-05-15T07:09:36Z","timestamp":1747292976000},"page":"1-39","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":18,"title":["Detecting Misuse of Security APIs: A Systematic Review"],"prefix":"10.1145","volume":"57","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-6538-5966","authenticated-orcid":false,"given":"Zahra","family":"Mousavi","sequence":"first","affiliation":[{"name":"Centre for Research on Engineering Software Technologies (CREST) & Adelaide University, Cyber Security CRC, CSIRO's Data61","place":["Adelaide, Australia"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6349-6483","authenticated-orcid":false,"given":"Chadni","family":"Islam","sequence":"additional","affiliation":[{"name":"Edith Cowan University","place":["Joondalup, Australia"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9696-3626","authenticated-orcid":false,"given":"Muhammad Ali","family":"Babar","sequence":"additional","affiliation":[{"name":"Centre for Research on Engineering Software Technologies (CREST) & Adelaide University","place":["Adelaide, Australia"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-9695-7947","authenticated-orcid":false,"given":"Alsharif","family":"Abuadbba","sequence":"additional","affiliation":[{"name":"CSIRO's Data61","place":["Sydney, Australia"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-9962-5080","authenticated-orcid":false,"given":"Kristen","family":"Moore","sequence":"additional","affiliation":[{"name":"CSIRO's Data61","place":["Melbourne, Australia"]}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2025,7,11]]},"reference":[{"key":"e_1_3_2_2_2","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382204"},{"key":"e_1_3_2_3_2","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516693"},{"key":"e_1_3_2_4_2","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3345659"},{"key":"e_1_3_2_5_2","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2018.23079"},{"key":"e_1_3_2_6_2","doi-asserted-by":"publisher","DOI":"10.1109\/ASE.2019.00036"},{"key":"e_1_3_2_7_2","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2019.2948910"},{"key":"e_1_3_2_8_2","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2016.111"},{"key":"e_1_3_2_9_2","doi-asserted-by":"publisher","DOI":"10.1109\/ESEM.2019.8870184"},{"key":"e_1_3_2_10_2","doi-asserted-by":"publisher","DOI":"10.1145\/3470133"},{"key":"e_1_3_2_11_2","first-page":"252","volume-title":"Proceedings of the Clarke, Furnell (Eds.): 10th International Symposium on Human Aspects of Information Security and Assurance, Frankfurt, Germany, July 19\u201321, 2016","author":"Gorski Peter Leo","year":"2016","unstructured":"Peter Leo Gorski and Luigi Lo Iacono. 2016. Towards the usability evaluation of security APIs. In Proceedings of the Clarke, Furnell (Eds.): 10th International Symposium on Human Aspects of Information Security and Assurance, Frankfurt, Germany, July 19\u201321, 2016. CSCAN, 252\u2013265."},{"key":"e_1_3_2_12_2","volume-title":"Management of Information Security","author":"Whitman Michael E.","year":"2013","unstructured":"Michael E. Whitman and Herbert J. Mattord. 2013. Management of Information Security. Cengage Learning."},{"key":"e_1_3_2_13_2","doi-asserted-by":"publisher","unstructured":"Dick Hardt. 2012. The OAuth 2.0 Authorization Framework. RFC Editor. DOI:10.17487\/RFC6749","DOI":"10.17487\/RFC6749"},{"key":"e_1_3_2_14_2","volume-title":"GDPR: General Data Protection Regulation (EU) 2016\/679: Post-reform Personal Data Protection in the European Union","author":"Krzysztofek Mariusz","year":"2018","unstructured":"Mariusz Krzysztofek. 2018. GDPR: General Data Protection Regulation (EU) 2016\/679: Post-reform Personal Data Protection in the European Union. Kluwer Law International BV."},{"key":"e_1_3_2_15_2","unstructured":"U.S. Department of Health and Human Services. 2024. HIPAA (Health Insurance Portability and Accountability Act). Retrieved from https:\/\/www.hhs.gov\/hipaa\/for-professionals\/index.html. Accessed May 26 2025."},{"key":"e_1_3_2_16_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-20550-2_13"},{"key":"e_1_3_2_17_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.31"},{"key":"e_1_3_2_18_2","first-page":"281","volume-title":"Proceedings of the SOUPS@ USENIX Security Symposium","author":"Assal Hala","year":"2018","unstructured":"Hala Assal and Sonia Chiasson. 2018. Security in the software development lifecycle. In Proceedings of the SOUPS@ USENIX Security Symposium. 281\u2013296."},{"key":"e_1_3_2_19_2","doi-asserted-by":"publisher","DOI":"10.5555\/998675.999432"},{"key":"e_1_3_2_20_2","volume-title":"Guidelines for Performing Systematic Literature Reviews in Software Engineering","author":"Kitchenham B.","year":"2007","unstructured":"B. Kitchenham and S. Charters. 2007. Guidelines for Performing Systematic Literature Reviews in Software Engineering. Technical Report. Technical report, Ver. 2.3 EBSE Technical Report. EBSE."},{"key":"e_1_3_2_21_2","doi-asserted-by":"crossref","unstructured":"Triet H. M. Le Huaming Chen and M. Ali Babar. 2022. A survey on data-driven software vulnerability assessment and prioritization. ACM Computing Surveys 55 5 (2022) 1\u201339.","DOI":"10.1145\/3529757"},{"key":"e_1_3_2_22_2","doi-asserted-by":"crossref","unstructured":"Roland Croft Yongzheng Xie and Muhammad Ali Babar. 2022. Data preparation for software vulnerability prediction: A systematic literature review. IEEE Transactions on Software Engineering 49 3 (2022) 1044\u20131063.","DOI":"10.1109\/TSE.2022.3171202"},{"key":"e_1_3_2_23_2","doi-asserted-by":"publisher","DOI":"10.1109\/JPROC.2020.2993293"},{"key":"e_1_3_2_24_2","doi-asserted-by":"publisher","DOI":"10.1145\/3442181"},{"key":"e_1_3_2_25_2","doi-asserted-by":"publisher","unstructured":"Orvila Sarker Asangi Jayatilaka Sherif Haggag Chelsea Liu and M. Ali Babar. 2024. A Multi-vocal Literature Review on challenges and critical success factors of phishing education training and awareness. J. Syst. Softw. 208 C (February 2024). DOI:10.1016\/j.jss.2023.111899","DOI":"10.1016\/j.jss.2023.111899"},{"key":"e_1_3_2_26_2","doi-asserted-by":"publisher","DOI":"10.1145\/2601248.2601268"},{"key":"e_1_3_2_27_2","unstructured":"Zahra Mousavi Chadni Islam M. Ali Babar Alsharif Abuadbba and Kristen Moore. 2023. Online Appendix of \u201cDetecting Misuses of Security APIs: A Systematic Review.\u201d Retrieved from https:\/\/github.com\/szmousavi\/SLR-of-Security-API-Misuse-Detection"},{"key":"e_1_3_2_28_2","doi-asserted-by":"publisher","DOI":"10.1191\/1478088706qp063oa"},{"key":"e_1_3_2_29_2","unstructured":"Pierre Carbonnelle. 2023. PYPL Popularity of Programming Language. (2023). Retrieved October 29 2023 from https:\/\/pypl.github.io\/PYPL.html"},{"key":"e_1_3_2_30_2","unstructured":"OpenSSL. (2023). Retrieved June 10 2023 from https:\/\/www.openssl.org\/"},{"key":"e_1_3_2_31_2","unstructured":"Nat Sakimura John Bradley Mike Jones Breno de Medeiros and Chuck Mortimore. 2014. OpenID Connect Core 1.0 Incorporating Errata Set 1. OpenID Foundation. Retrieved from https:\/\/openid.net\/specs\/openid-connect-core-1_0.html"},{"key":"e_1_3_2_32_2","unstructured":"Google. 2015. New in Android Samples: Authenticating to Remote Servers using the Fingerprint API. (2015). Retrieved June 10 2023 from https:\/\/android-developers.googleblog.com\/2015\/10\/new-in-android-samples-authenticating.html"},{"key":"e_1_3_2_33_2","unstructured":"OWASP-MASTG. 2017. Local Authentication on Android. (2017). Retrieved June 10 2023 from https:\/\/github.com\/OWASP\/owasp-mastg\/blob\/master\/Document\/0x05f-Testing-Local-Authentication.md"},{"key":"e_1_3_2_34_2","unstructured":"YubiCo. 2017. YubiKeys. (2017). Retrieved June 10 2023 from https:\/\/www.yubico.com\/products\/yubikey-hardware\/"},{"key":"e_1_3_2_35_2","unstructured":"Spring. Spring Security. ([n. d.]). Retrieved June 10 2023 from https:\/\/spring.io\/projects\/spring-security"},{"key":"e_1_3_2_36_2","unstructured":"Google. 2020. SafetyNet Attestation API. (2020). Retrieved June 10 2023 from https:\/\/developer.android.com\/training\/safetynet\/attestation"},{"key":"e_1_3_2_37_2","doi-asserted-by":"publisher","DOI":"10.1145\/2901739.2903508"},{"key":"e_1_3_2_38_2","first-page":"339","volume-title":"Proceedings of the USENIX Security Symposium","author":"Fischer Felix","year":"2019","unstructured":"Felix Fischer, Huang Xiao, Ching-Yu Kao, Yannick Stachelscheid, Benjamin Johnson, Danial Razar, Paul Fawkesley, Nat Buckley, Konstantin B\u00f6ttinger, Paul Muntean, et\u00a0al. 2019. Stack overflow considered helpful! Deep learning security nudges towards stronger cryptography. In Proceedings of the USENIX Security Symposium. 339\u2013356."},{"key":"e_1_3_2_39_2","unstructured":"Elaine Barker William Burr Alicia Jones Timothy Polk Scott Rose Miles Smid Quynh Dang and others. 2012. Recommendation for key management Part 3: Application-specific key management guidance. National Institute of Standards. Retrieved from https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800-57pt3r1.pdf"},{"key":"e_1_3_2_40_2","unstructured":"Oracle. 2022. JDK 19 Documentation. (2022). Retrieved June 10 2023 from https:\/\/docs.oracle.com\/en\/java\/javase\/19\/"},{"key":"e_1_3_2_41_2","unstructured":"Elaine Barker and Quynh Dang. 2016. Recommendation for Key Management \u2013 Part 1: General (Revision 4). National Institute of Standards. Retrieved from https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800-57pt1r4.pdf"},{"key":"e_1_3_2_42_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-42045-0_18"},{"key":"e_1_3_2_43_2","doi-asserted-by":"publisher","DOI":"10.1016\/0196-6774(92)90054-G"},{"key":"e_1_3_2_44_2","doi-asserted-by":"publisher","unstructured":"Kathleen Moriarty Burt Kaliski and Andreas Rusch. 2017. PKCS #5: Password-Based Cryptography Specification Version 2.1. RFC Editor. DOI:10.17487\/RFC8018","DOI":"10.17487\/RFC8018"},{"key":"e_1_3_2_45_2","doi-asserted-by":"publisher","unstructured":"Richard Barnes Martin Thomson Alfredo Pironti and Adam Langley. 2015. Deprecating Secure Sockets Layer Version 3.0. RFC Editor. DOI:10.17487\/RFC7568. Accessed May 26 2025.","DOI":"10.17487\/RFC7568"},{"key":"e_1_3_2_46_2","doi-asserted-by":"crossref","unstructured":"K. Moriarty and S. Farrell. 2021. Deprecating TLSv1.0 and TLSv1. (2021). Retrieved June 10 2023 from https:\/\/tools.ietf.org\/html\/draft-ietf-tls-oldversions-deprecate-12","DOI":"10.17487\/RFC8996"},{"key":"e_1_3_2_47_2","doi-asserted-by":"publisher","DOI":"10.17487\/rfc6176"},{"key":"e_1_3_2_48_2","unstructured":"Moxie Marlinspike. 2009. More tricks for defeating SSL in practice. Talk presented at Black Hat USA. Retrieved from https:\/\/www.blackhat.com\/presentations\/bh-usa-09\/MARLINSPIKE\/BHUSA09-Marlinspike-DefeatSSL-SLIDES.pdf"},{"key":"e_1_3_2_49_2","unstructured":"Moxie Marlinspike. 2009. New Tricks for Defeating SSL in Practice. Talk presented at Black Hat DC. Retrieved from https:\/\/www.blackhat.com\/presentations\/bh-dc-09\/Marlinspike\/BlackHat-DC-09-Marlinspike-Defeating-SSL.pdf"},{"key":"e_1_3_2_50_2","unstructured":"Common Weakness Enumeration. CWE-306: Missing Authentication for Critical Function. ([n. d.]). Retrieved June 10 2023 from https:\/\/cwe.mitre.org\/data\/definitions\/306.html"},{"key":"e_1_3_2_51_2","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3559381"},{"key":"e_1_3_2_52_2","doi-asserted-by":"publisher","DOI":"10.17487\/RFC7636"},{"key":"e_1_3_2_53_2","unstructured":"Common Weakness Enumeration. CWE-862: Missing Authorization. (2023). Retrieved June 10 2023 from https:\/\/cwe.mitre.org\/data\/definitions\/862.html"},{"key":"e_1_3_2_54_2","unstructured":"Common Weakness Enumeration. CWE-863: Incorrect Authorization. (2023). Retrieved June 10 2023 from https:\/\/cwe.mitre.org\/data\/definitions\/863.html"},{"key":"e_1_3_2_55_2","unstructured":"Marc Stevens Elie Bursztein Pierre Karpman Ange Albertini Yarik Markov Alex Petit-Bianco and Cl\u00e9ment Baisse. 2017. Announcing the first SHA-1 collision. Google Security Blog. Retrieved from https:\/\/security.googleblog.com\/2017\/02\/announcing-first-sha1-collision.html"},{"key":"e_1_3_2_56_2","volume-title":"Proceedings of the Cetus Users and Compiler Infastructure Workshop","author":"Lam Patrick","year":"2011","unstructured":"Patrick Lam, Eric Bodden, Ondrej Lhot\u00e1k, and Laurie Hendren. 2011. The Soot framework for Java program analysis: A retrospective. In Proceedings of the Cetus Users and Compiler Infastructure Workshop."},{"key":"e_1_3_2_57_2","unstructured":"Tumbleson Connor and Wi\u015bniewski Ryszard. 2010. Apktool - A Tool for Reverse Engineering Android apk Files. (2010). Retrieved June 10 2023 from https:\/\/ibotpeaches.github.io\/Apktool\/"},{"key":"e_1_3_2_58_2","unstructured":"Anthony Desnos. 2012. Reverse Engineering and Pentesting for Android Applications. (2012). Retrieved June 10 2023 from https:\/\/github.com\/androguard\/androguard"},{"key":"e_1_3_2_59_2","unstructured":"IBM: T.J. Watson Libraries for Analysis WALA. (2023). Retrieved June 10 2023 from https:\/\/wala.sourceforge.net\/"},{"key":"e_1_3_2_60_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-54455-3_14"},{"key":"e_1_3_2_61_2","doi-asserted-by":"publisher","DOI":"10.1145\/2666356.2594299"},{"key":"e_1_3_2_62_2","doi-asserted-by":"publisher","DOI":"10.1145\/1050849.1050865"},{"key":"e_1_3_2_63_2","doi-asserted-by":"publisher","DOI":"10.1145\/360248.360252"},{"key":"e_1_3_2_64_2","doi-asserted-by":"publisher","DOI":"10.1109\/ISSRE.2017.27"},{"key":"e_1_3_2_65_2","unstructured":"2019. CryptoAPI-Bench. (2019). Retrieved June 10 2023 from https:\/\/github.com\/CryptoGuardOSS\/cryptoapi-bench"},{"key":"e_1_3_2_66_2","unstructured":"2020. ApacheCryptoAPI-Bench. (2020). Retrieved June 10 2023 from https:\/\/github.com\/CryptoAPI-Bench\/ApacheCryptoAPI-Bench"},{"key":"e_1_3_2_67_2","doi-asserted-by":"publisher","DOI":"10.1145\/2901739.2903506"},{"key":"e_1_3_2_68_2","unstructured":"2016. MUBench. (2016). Retrieved June 10 2023 from https:\/\/GitHub.com\/stg-tud\/MUBench"},{"key":"e_1_3_2_69_2","unstructured":"2021. OWASP Benchmark. (2021). Retrieved June 10 2023 from https:\/\/owasp.org\/www-project-benchmark\/"},{"key":"e_1_3_2_70_2","unstructured":"2015. DroidBench. (2015). Retrieved June 10 2023 from https:\/\/GitHub.com\/secure-software-engineering\/DroidBench"},{"key":"e_1_3_2_71_2","unstructured":"2017. ICC-Bench. (2017). Retrieved June 10 2023 from https:\/\/GitHub.com\/fgwei\/ICC-Bench"},{"key":"e_1_3_2_72_2","doi-asserted-by":"publisher","DOI":"10.1145\/3180155.3180201"},{"key":"e_1_3_2_73_2","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053004"},{"key":"e_1_3_2_74_2","unstructured":"Yuhong Nan Zhemin Yang Xiaofeng Wang Yuan Zhang Donglai Zhu and Min Yang. 2018. Finding clues for your secrets: Semantics-driven learning-based privacy discovery in mobile apps. In Proceedings of the 2018 Network and Distributed System Security Symposium (NDSS). Internet Society San Diego CA USA. Retrieved from https:\/\/yangzhemin.github.io\/papers\/cluefinder-ndss2018.pdf"},{"key":"e_1_3_2_75_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00009"},{"key":"e_1_3_2_76_2","doi-asserted-by":"publisher","DOI":"10.1007\/s11036-018-1099-7"},{"key":"e_1_3_2_77_2","first-page":"125","volume-title":"Proceedings of the 2021 IEEE\/ACM 43rd International Conference on Software Engineering .","author":"Wan Chengcheng","year":"2021","unstructured":"Chengcheng Wan, Shicheng Liu, Henry Hoffmann, Michael Maire, and Shan Lu. 2021. Are machine learning cloud APIs used correctly?. In Proceedings of the 2021 IEEE\/ACM 43rd International Conference on Software Engineering .IEEE, 125\u2013137."},{"key":"e_1_3_2_78_2","doi-asserted-by":"publisher","DOI":"10.1145\/3510003.3510068"},{"key":"e_1_3_2_79_2","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3639177"},{"key":"e_1_3_2_80_2","doi-asserted-by":"crossref","unstructured":"Xinyi Hou Yanjie Zhao Yue Liu Zhou Yang Kailong Wang Li Li Xiapu Luo David Lo John Grundy and Haoyu Wang. 2024. Large language models for software engineering: A systematic literature review. ACM Transactions on Software Engineering and Methodology 33 8 (2024) 1\u201379.","DOI":"10.1145\/3695988"},{"key":"e_1_3_2_81_2","doi-asserted-by":"publisher","DOI":"10.1145\/3581641.3584037"},{"key":"e_1_3_2_82_2","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3639187"},{"key":"e_1_3_2_83_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE48619.2023.00129"},{"key":"e_1_3_2_84_2","doi-asserted-by":"publisher","DOI":"10.1145\/3634737.3661134"},{"key":"e_1_3_2_85_2","unstructured":"Google. Biometrics API. (2023). Retrieved October 29 2023 from https:\/\/developer.android.com\/reference\/android\/hardware\/biometrics\/package-summary"},{"key":"e_1_3_2_86_2","unstructured":"Google. Play Integrity. (2023). Retrieved October 29 2023 https:\/\/developer.android.com\/google\/play\/integrity"},{"key":"e_1_3_2_87_2","doi-asserted-by":"publisher","DOI":"10.1145\/3597503.3639084"},{"key":"e_1_3_2_88_2","first-page":"729","volume-title":"Proceedings of the 28th USENIX Security Symposium","author":"Pendlebury Feargus","year":"2019","unstructured":"Feargus Pendlebury, Fabio Pierazzi, Roberto Jordaney, Johannes Kinder, and Lorenzo Cavallaro. 2019. \\(\\lbrace\\) TESSERACT \\(\\rbrace\\) : Eliminating experimental bias in malware classification across space and time. In Proceedings of the 28th USENIX Security Symposium. 729\u2013746."},{"key":"e_1_3_2_89_2","doi-asserted-by":"publisher","DOI":"10.1186\/s42400-020-00064-4"},{"key":"e_1_3_2_90_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-58793-2_18"},{"key":"e_1_3_2_91_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-86797-3_25"},{"key":"e_1_3_2_92_2","doi-asserted-by":"crossref","unstructured":"Georgios Lampropoulos and Kinshuk. 2024. Virtual reality and gamification in education: A systematic review. Educational Technology Research and Development 72 3 (2024) 1691\u20131785.","DOI":"10.1007\/s11423-024-10351-3"}],"container-title":["ACM Computing Surveys"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3735968","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,16]],"date-time":"2025-07-16T13:25:34Z","timestamp":1752672334000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3735968"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,7,11]]},"references-count":91,"journal-issue":{"issue":"12","published-print":{"date-parts":[[2025,12,31]]}},"alternative-id":["10.1145\/3735968"],"URL":"https:\/\/doi.org\/10.1145\/3735968","relation":{},"ISSN":["0360-0300","1557-7341"],"issn-type":[{"value":"0360-0300","type":"print"},{"value":"1557-7341","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,7,11]]},"assertion":[{"value":"2023-06-14","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-05-08","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2025-07-11","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}