{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,27]],"date-time":"2026-04-27T10:31:51Z","timestamp":1777285911525,"version":"3.51.4"},"reference-count":270,"publisher":"Association for Computing Machinery (ACM)","issue":"11","funder":[{"DOI":"10.13039\/501100001659","name":"Deutsche Forschungsgemeinschaft","doi-asserted-by":"publisher","award":["EXC 2092 CASA - 390781972"],"award-info":[{"award-number":["EXC 2092 CASA - 390781972"]}],"id":[{"id":"10.13039\/501100001659","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/501100002347","name":"Bundesministerium f\u00fcr Forschung, Technologie und Raumfahrt","doi-asserted-by":"crossref","award":["PrivacyE2E - 16KIS1888K"],"award-info":[{"award-number":["PrivacyE2E - 16KIS1888K"]}],"id":[{"id":"10.13039\/501100002347","id-type":"DOI","asserted-by":"crossref"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["ACM Comput. Surv."],"published-print":{"date-parts":[[2026,8,30]]},"abstract":"<jats:p>Security engineering\u2014from creating security requirements to the implementation of security features, such as cryptography or authentification\u2014is often supported by domain-specific languages (DSLs). While many security DSLs have been presented, a lack of overview and empirical data about these DSLs, such as which security aspects are addressed and when, hinders their effective use and further research. This systematic literature review examines 120 security DSLs regarding their security aspects and goals addressed, their language-specific characteristics, their integration into the software development lifecycle, and their evaluation. We observe a focus on individual development phases and a high degree of fragmentation, which leads to opportunities for integration. The research community also needs to improve the usability and evaluation of security DSLs.<\/jats:p>","DOI":"10.1145\/3802817","type":"journal-article","created":{"date-parts":[[2026,4,13]],"date-time":"2026-04-13T10:56:20Z","timestamp":1776077780000},"page":"1-36","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["120 Domain-Specific Languages for Security"],"prefix":"10.1145","volume":"58","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-1362-423X","authenticated-orcid":false,"given":"Markus","family":"Krausz","sequence":"first","affiliation":[{"name":"Ruhr University Bochum","place":["Bochum, Germany"]},{"name":"T\u00dcV Informationstechnik GmbH","place":["Bochum, Germany"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2604-0487","authenticated-orcid":false,"given":"Sven","family":"Peldszus","sequence":"additional","affiliation":[{"name":"Ruhr University Bochum","place":["Bochum, Germany"]},{"name":"IT University of Copenhagen","place":["Bochum, Germany"]},{"name":"Chalmers University of Technology","place":["Bochum, Germany"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3870-5167","authenticated-orcid":false,"given":"Thorsten","family":"Berger","sequence":"additional","affiliation":[{"name":"Ruhr University Bochum","place":["Bochum, Germany"]},{"name":"Chalmers University of Technology","place":["Bochum, Germany"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6385-0780","authenticated-orcid":false,"given":"Francesco","family":"Regazzoni","sequence":"additional","affiliation":[{"name":"University of Amsterdam","place":["Amsterdam, Netherlands"]},{"name":"Universita della Svizzera Italiana","place":["Amsterdam, Netherlands"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3293-4989","authenticated-orcid":false,"given":"Tim","family":"G\u00fcneysu","sequence":"additional","affiliation":[{"name":"Ruhr-Universitat Bochum","place":["Bochum, Germany"]},{"name":"Cyber-Physical Systems, DFKI","place":["Bochum, Germany"]}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2026,4,25]]},"reference":[{"key":"e_1_3_1_2_2","unstructured":"2017. PwnPr3d. Retrieved from https:\/\/github.com\/PwnPr3d\/pwnPr3d-GUI-Project2"},{"key":"e_1_3_1_3_2","unstructured":"2018. FLAMinLIO Tool. Retrieved from https:\/\/www.dropbox.com\/s\/zxy991pjeepl8nn\/FLAMinLIO.zip?e=1"},{"key":"e_1_3_1_4_2","unstructured":"2019. Zee Sourcecode. Retrieved from https:\/\/www.dropbox.com\/s\/bl2jusn8nqukqhu\/zee.zip"},{"key":"e_1_3_1_5_2","doi-asserted-by":"publisher","DOI":"10.1109\/COMNET.2009.5373568"},{"key":"e_1_3_1_6_2","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2013.14"},{"key":"e_1_3_1_7_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICNSS.2011.6060030"},{"key":"e_1_3_1_8_2","doi-asserted-by":"publisher","DOI":"10.1145\/3106237.3122823"},{"key":"e_1_3_1_9_2","doi-asserted-by":"publisher","DOI":"10.4304\/jsw.2.1.47-59"},{"key":"e_1_3_1_10_2","doi-asserted-by":"publisher","DOI":"10.1145\/1501434.1501451"},{"key":"e_1_3_1_11_2","doi-asserted-by":"publisher","DOI":"10.1109\/EDOC.2007.52"},{"key":"e_1_3_1_12_2","volume-title":"CCS","author":"Almeida Jos\u00e9 Bacelar","year":"2017","unstructured":"Jos\u00e9 Bacelar Almeida, Manuel Barbosa, Gilles Barthe, Arthur Blot, Benjamin Gr\u00e9goire, Vincent Laporte, Tiago Oliveira, Hugo Pacheco, Benedikt Schmidt, and Pierre-Yves Strub. 2017. Jasmin: High-assurance and high-speed cryptography. In CCS."},{"key":"e_1_3_1_13_2","unstructured":"Mohamed Almorsy. 2013. MDSE@R Files. Retrieved from https:\/\/sourceforge.net\/projects\/mdse-r\/"},{"key":"e_1_3_1_14_2","doi-asserted-by":"publisher","DOI":"10.1109\/ASWEC.2014.18"},{"key":"e_1_3_1_15_2","volume-title":"SIN","author":"Amine Daoud Mohamed","year":"2019","unstructured":"Daoud Mohamed Amine, Dahmani Youcef, and Mostefaoui Kadda. 2019. Ids-Dl: A description language for detection system in cloud computing. In SIN."},{"key":"e_1_3_1_16_2","doi-asserted-by":"publisher","DOI":"10.5220\/0009893205130521"},{"key":"e_1_3_1_17_2","volume-title":"Security Engineering\u2014A Guide to Building Dependable Distributed Systems","author":"Anderson Ross J.","year":"2008","unstructured":"Ross J. Anderson. 2008. Security Engineering\u2014A Guide to Building Dependable Distributed Systems. Wiley."},{"key":"e_1_3_1_18_2","unstructured":"OpenWide Arkoon Network Security and Telecom ParisTech. 2014. Haka Security Project. Retrieved from http:\/\/www.haka-security.org\/. accessed 7 Feb. 2024."},{"key":"e_1_3_1_19_2","volume-title":"IICT","author":"Arogundade Oluwasefunmi Tale","year":"2020","unstructured":"Oluwasefunmi Tale Arogundade, Olutimi Onilede, Sanjay Misra, Olusola Abayomi-Alli, Modupe Odusami, and Jonathan Oluranti. 2020. From modeling to code generation: An enhanced and integrated approach. In IICT."},{"key":"e_1_3_1_20_2","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2015.30"},{"key":"e_1_3_1_21_2","doi-asserted-by":"publisher","DOI":"10.1109\/CEC.2011.13"},{"key":"e_1_3_1_22_2","unstructured":"Stefan Axelsson. 2000. Intrusion Detection Systems: A Survey and Taxonomy. (2000). Software Eng. Notes."},{"key":"e_1_3_1_23_2","volume-title":"FSTTCS","author":"Bain Alex","year":"2011","unstructured":"Alex Bain, John C. Mitchell, Rahul Sharma, Deian Stefan, and Joe Zimmerman. 2011. A domain-specific language for computing on encrypted data (invited talk). In FSTTCS."},{"key":"e_1_3_1_24_2","volume-title":"Web Services Policy 1.2 - Framework (ws-Policy)","author":"Bajaj Siddharth","year":"2006","unstructured":"Siddharth Bajaj, Don Box, Dave Chappell, Francisco Curbera, Glen Daniels, Phillip Hallam-Baker, Maryann Hondo, Chris Kaler, Dave Langworthy, Anthony Nadalin, et\u00a0al. 2006. Web Services Policy 1.2 - Framework (ws-Policy). Technical Report. W3C."},{"key":"e_1_3_1_25_2","volume-title":"ISSA","author":"Bangerter Endre","year":"2011","unstructured":"Endre Bangerter, Stephan Krenn, Matrial Seifriz, and Ulrich Ultes-Nitsche. 2011. Cplc - A cryptographic programming language and compiler. In ISSA."},{"key":"e_1_3_1_26_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00008"},{"key":"e_1_3_1_27_2","volume-title":"TES","author":"Baresi Luciano","year":"2005","unstructured":"Luciano Baresi, Sam Guinea, and Pierluigi Plebani. 2005. WS-policy for service monitoring. In TES."},{"key":"e_1_3_1_28_2","volume-title":"QUATIC","author":"Barisic Ankica","year":"2012","unstructured":"Ankica Barisic, Vasco Amaral, and Miguel Goul\u00e3o. 2012. Usability evaluation of domain-specific languages. In QUATIC."},{"key":"e_1_3_1_29_2","volume-title":"PLATEAU","author":"Barisic Ankica","year":"2011","unstructured":"Ankica Barisic, Vasco Amaral, Miguel Goul\u00e3o, and Bruno Barroca. 2011. Quality in use of domain-specific languages: A case study. In PLATEAU."},{"key":"e_1_3_1_30_2","volume-title":"MODELS","author":"Barros Djonathan","year":"2022","unstructured":"Djonathan Barros, Sven Peldszus, Wesley K. G. Assun\u00e7\u00e3o, and Thorsten Berger. 2022. Editing support for software languages: Implementation practices in language server protocols. In MODELS."},{"key":"e_1_3_1_31_2","volume-title":"ARES","author":"Bartsch Steffen","year":"2011","unstructured":"Steffen Bartsch. 2011. Practitioners\u2019 perspectives on security in agile development. In ARES."},{"issue":"2956","key":"e_1_3_1_32_2","article-title":"Software modeling and measurement: The goal\/question\/metric paradigm","author":"Basili Victor R.","year":"1992","unstructured":"Victor R. Basili. 1992. Software modeling and measurement: The goal\/question\/metric paradigm. Computer Science Technical Report SeriesCS-TR-2956 (1992).","journal-title":"Computer Science Technical Report Series"},{"key":"e_1_3_1_33_2","volume-title":"MODELS","author":"Basin David A.","year":"2007","unstructured":"David A. Basin, Manuel Clavel, J\u00fcrgen Doser, and Marina Egea. 2007. A metamodel-based approach for analyzing security-design models. In MODELS."},{"key":"e_1_3_1_34_2","doi-asserted-by":"publisher","DOI":"10.1145\/1998441.1998443"},{"key":"e_1_3_1_35_2","doi-asserted-by":"publisher","DOI":"10.1145\/1125808.1125810"},{"key":"e_1_3_1_36_2","unstructured":"Andrew Baumann Barry Bond Andrew Ferraiuolo Chris Hawblitzel Jon Howell Manos Kapritsos K. Rustan M. Leino Jacob R. Lorch Bryan Parno Ashay Rane et\u00a0al. 2024. Vale. Retrieved from https:\/\/github.com\/project-everest\/vale"},{"key":"e_1_3_1_37_2","unstructured":"Jeffrey Beall. 2024. Beall\u2019s List of Potential Predatory Journals and Publishers. Retrieved from https:\/\/beallslist.net"},{"key":"e_1_3_1_38_2","unstructured":"Delphine Beaulaton. 2018. IoT to BIP Compiler. Retrieved from https:\/\/gitlab.inria.fr\/IOTLanguage\/IoTCompilertoBIP"},{"key":"e_1_3_1_39_2","doi-asserted-by":"publisher","DOI":"10.1109\/SYSOSE.2018.8428704"},{"key":"e_1_3_1_40_2","doi-asserted-by":"publisher","DOI":"10.3233\/JCS-2009-0364"},{"key":"e_1_3_1_41_2","volume-title":"Secure Computer Systems: Mathematical Foundations","author":"Bell D. Elliot","year":"1973","unstructured":"D. Elliot Bell and Leonard J. LaPadula. 1973. Secure Computer Systems: Mathematical Foundations. Technical Report. MITRE Corporation."},{"key":"e_1_3_1_42_2","volume-title":"CCS","author":"Ben-David Assaf","year":"2008","unstructured":"Assaf Ben-David, Noam Nisan, and Benny Pinkas. 2008. Fairplaymp: A system for secure multi-party computation. In CCS."},{"key":"e_1_3_1_43_2","volume-title":"Implementing DSLs with Xtext and Xtend","author":"Bettini Lorenzo","year":"2016","unstructured":"Lorenzo Bettini. 2016. Implementing DSLs with Xtext and Xtend. Packt Publishing."},{"key":"e_1_3_1_44_2","volume-title":"USENIX Security","author":"Bhargavan K.","year":"2013","unstructured":"K. Bhargavan, Antoine Delignat-Lavaud, and S. Maffeis. 2013. Language-based defenses against untrusted browser origins. In USENIX Security."},{"issue":"5","key":"e_1_3_1_45_2","article-title":"X-FEDERATE: A policy engineering framework for federated access management","volume":"32","author":"Bhatti Rafae","year":"2006","unstructured":"Rafae Bhatti, Elisa Bertino, and Arif Ghafoor. 2006. X-FEDERATE: A policy engineering framework for federated access management. TSE 32, 5 (2006), 330\u2013346.","journal-title":"TSE"},{"key":"e_1_3_1_46_2","doi-asserted-by":"publisher","DOI":"10.1109\/MIC.2008.40"},{"key":"e_1_3_1_47_2","doi-asserted-by":"publisher","DOI":"10.1145\/1065545.1065547"},{"key":"e_1_3_1_48_2","doi-asserted-by":"publisher","DOI":"10.1145\/1108906.1108909"},{"key":"e_1_3_1_49_2","volume-title":"Integrity Considerations for Secure Computer Systems","author":"Biba Kenneth J.","year":"1977","unstructured":"Kenneth J. Biba. 1977. Integrity Considerations for Secure Computer Systems. Technical Report. MITRE Corporation."},{"key":"e_1_3_1_50_2","volume-title":"Robot Framework Test Automation","author":"Bisht Sumit","year":"2013","unstructured":"Sumit Bisht. 2013. Robot Framework Test Automation. Packt Publishing."},{"key":"e_1_3_1_51_2","volume-title":"POLICY","author":"Bleikertz Soren","year":"2011","unstructured":"Soren Bleikertz and Thomas Gro\u00df. 2011. A virtualization assurance language for isolation and deployment. In POLICY."},{"key":"e_1_3_1_52_2","volume-title":"USENIX Security","author":"Bond Barry","year":"2017","unstructured":"Barry Bond, Chris Hawblitzel, Manos Kapritsos, K. Rustan M. Leino, Jacob R. Lorch, Bryan Parno, Ashay Rane, Srinath T. V. Setty, and Laure Thompson. 2017. Vale: Verifying high-performance cryptographic assembly code. In USENIX Security."},{"key":"e_1_3_1_53_2","volume-title":"ARES","author":"Breu Ruth","year":"2008","unstructured":"Ruth Breu, Frank Innerhofer-Oberperfler, and Artsiom Yautsiukhin. 2008. Quantitative assessment of enterprise security system. In ARES."},{"key":"e_1_3_1_54_2","doi-asserted-by":"publisher","DOI":"10.1007\/s10009-007-0045-y"},{"key":"e_1_3_1_55_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-03542-0_16"},{"key":"e_1_3_1_56_2","doi-asserted-by":"crossref","unstructured":"Niklas Broberg Bart van Delft David Sands et\u00a0al. 2013. Paragon Website. Retrieved from https:\/\/www.cse.chalmers.se\/research\/group\/paragon\/","DOI":"10.1145\/2637113.2637122"},{"key":"e_1_3_1_57_2","volume-title":"USENIX Security","author":"Bugiel Sven","year":"2013","unstructured":"Sven Bugiel, Stephan Heuser, and A. Sadeghi. 2013. Flexible and fine-grained mandatory access control on android for diverse security and privacy policies. In USENIX Security."},{"key":"e_1_3_1_58_2","doi-asserted-by":"publisher","DOI":"10.1109\/EDOC.2003.1233846"},{"key":"e_1_3_1_59_2","volume-title":"QRS","author":"Cao Yang","year":"2019","unstructured":"Yang Cao, Yunwei Dong, Xiaomin Wei, and Xiao Wu. 2019. Aadl vulnerability modeling and security analysis method. In QRS."},{"key":"e_1_3_1_60_2","doi-asserted-by":"publisher","DOI":"10.1109\/SecDev.2017.24"},{"key":"e_1_3_1_61_2","doi-asserted-by":"publisher","DOI":"10.1145\/3314221.3314605"},{"key":"e_1_3_1_62_2","article-title":"Data Integrity: Identifying and Protecting Assets Against Ransomware and Other Destructive Events","author":"Cawthra Jennifer","year":"2020","unstructured":"Jennifer Cawthra, Michael Ekstrom, Lauren Lusty, Julian Sexton, John Sweetnam, and Anne Townsend. 2020. Data Integrity: Identifying and Protecting Assets Against Ransomware and Other Destructive Events. NIST Special Publication 1800-25.","journal-title":"NIST Special Publication 1800-25"},{"key":"e_1_3_1_63_2","doi-asserted-by":"publisher","DOI":"10.1109\/CSF54842.2022.9919690"},{"key":"e_1_3_1_64_2","doi-asserted-by":"publisher","DOI":"10.1109\/TELERISE.2015.9"},{"key":"e_1_3_1_65_2","volume-title":"CloudCom","author":"Chen Danwei","year":"2009","unstructured":"Danwei Chen, Xiuli Huang, and Xunyi Ren. 2009. Access control of cloud service based on UCON. In CloudCom."},{"issue":"2023","key":"e_1_3_1_66_2","article-title":"HAETAE: Shorter lattice-based fiat-shamir signatures","author":"Cheon Jung Hee","year":"2023","unstructured":"Jung Hee Cheon, Hyeongmin Choe, Julien Devevey, Tim G\u00fcneysu, Dongyeon Hong, Markus Krausz, Georg Land, Marc M\u00f6ller, Damien Stehl\u00e9, and MinJune Yi. 2023. HAETAE: Shorter lattice-based fiat-shamir signatures. Cryptology ePrint Archive2023\/624 (2023).","journal-title":"Cryptology ePrint Archive"},{"key":"e_1_3_1_67_2","volume-title":"ISC","author":"Conti Mauro","year":"2010","unstructured":"Mauro Conti, Vu Thien Nga Nguyen, and Bruno Crispo. 2010. CRePE: Context-related policy enforcement for android. In ISC."},{"key":"e_1_3_1_68_2","unstructured":"Brian J. Corcoran Michael Hicks Nikhil Swamy and Simon Tsang. 2008. SELinks Website. Retrieved from https:\/\/www.cs.umd.edu\/projects\/PL\/selinks\/"},{"key":"e_1_3_1_69_2","volume-title":"POST","author":"Crampton Jason","year":"2012","unstructured":"Jason Crampton and Charles Morisset. 2012. PTaCL: A language for attribute-based access control in open systems. In POST."},{"key":"e_1_3_1_70_2","volume-title":"POLICY","author":"Damianou Nicodemos","year":"2001","unstructured":"Nicodemos Damianou, Naranker Dulay, Emil Lupu, and Morris Sloman. 2001. The ponder policy specification language. In POLICY."},{"key":"e_1_3_1_71_2","doi-asserted-by":"publisher","DOI":"10.1007\/s00766-010-0115-7"},{"key":"e_1_3_1_72_2","doi-asserted-by":"publisher","DOI":"10.1145\/359636.359712"},{"key":"e_1_3_1_73_2","volume-title":"ICSEA","author":"Nascimento Leandro Marques do","year":"2012","unstructured":"Leandro Marques do Nascimento, Daniel Leite Viana, PAS Neto, DA Martins, Vinicius Cardoso Garcia, and SR Meira. 2012. A systematic mapping study on domain-specific languages. In ICSEA."},{"key":"e_1_3_1_74_2","unstructured":"J\u00fcrgen Doser. 2007. SecureUML Website. Retrieved from https:\/\/archiv.infsec.ethz.ch\/people\/doserj\/mds.html"},{"key":"e_1_3_1_75_2","doi-asserted-by":"publisher","DOI":"10.5220\/0010821400003120"},{"issue":"1","key":"e_1_3_1_76_2","article-title":"STATL: An attack language for state-based intrusion detection","volume":"10","author":"Eckmann Steven T.","year":"2002","unstructured":"Steven T. Eckmann, Giovanni Vigna, and Richard A. Kemmerer. 2002. STATL: An attack language for state-based intrusion detection. JCS 10, 1\/2 (2002), 71\u2013104.","journal-title":"JCS"},{"key":"e_1_3_1_77_2","volume-title":"QRS","author":"Emeka Busalire Onesmus","year":"2017","unstructured":"Busalire Onesmus Emeka and Shaoying Liu. 2017. Security requirement engineering using structured object-oriented formal language for M-banking applications. In QRS."},{"key":"e_1_3_1_78_2","doi-asserted-by":"publisher","DOI":"10.1145\/1481848.1481860"},{"key":"e_1_3_1_79_2","unstructured":"ETSI. 2023. TTCN-3 Website. Retrieved from http:\/\/www.ttcn-3.org\/"},{"key":"e_1_3_1_80_2","doi-asserted-by":"crossref","unstructured":"Ameni Ben Fadhel. 2017. GemRBAC. Retrieved from https:\/\/github.com\/AmeniBF\/GemRBAC-DSL","DOI":"10.1145\/2914642.2914656"},{"key":"e_1_3_1_81_2","doi-asserted-by":"publisher","DOI":"10.1145\/2914642.2914656"},{"key":"e_1_3_1_82_2","unstructured":"Paul Fariello Kevin Denis and Nicolas Aguirre. 2016. Haka Security. Retrieved from https:\/\/github.com\/haka-security\/haka"},{"key":"e_1_3_1_83_2","doi-asserted-by":"publisher","unstructured":"Luminous Fennell and Peter Thiemann. 2016. LJGS: Gradual security types for object-oriented languages. In Proceedings of the 30th European Conference on Object-Oriented Programming (ECOOP 2016). LIPIcs 56 (2016) 9:1\u20139:26. DOI:10.4230\/LIPIcs.ECOOP.2016.9","DOI":"10.4230\/LIPIcs.ECOOP.2016.9"},{"key":"e_1_3_1_84_2","doi-asserted-by":"publisher","unstructured":"Luminous Fennell and Peter Thiemann. 2016. LJGS: Gradual Security Types for Object-Oriented Languages (Artifact). In Special Issue of the 30th European Conference on Object-Oriented Programming (ECOOP\u201916). Dagstuhl Artifacts Series (DARTS). Schloss Dagstuhl \u2013 Leibniz-Zentrum f\u00fcr Informatik 2 1 (2016) 4:1\u20134:2. DOI:10.4230\/DARTS.2.1.4","DOI":"10.4230\/DARTS.2.1.4"},{"key":"e_1_3_1_85_2","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom.2014.21"},{"key":"e_1_3_1_86_2","unstructured":"Andrew Ferraiuolo. 2015. SecVerilog. Retrieved from https:\/\/github.com\/aferr\/secverilog"},{"key":"e_1_3_1_87_2","volume-title":"CCS","author":"Ferraiuolo Andrew","year":"2018","unstructured":"Andrew Ferraiuolo, Mark Zhao, Andrew C. Myers, and G. Edward Suh. 2018. HyperFlow: A processor architecture for nonmalleable, timing-safe information flow security. In CCS."},{"key":"e_1_3_1_88_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.16"},{"key":"e_1_3_1_89_2","volume-title":"USENIX Security","author":"Fournet C\u00e9dric","year":"2013","unstructured":"C\u00e9dric Fournet, Markulf Kohlweiss, George Danezis, and Zhengqin Luo. 2013. ZQL: A compiler for privacy-preserving data processing. In USENIX Security."},{"key":"e_1_3_1_90_2","volume-title":"Domain-Specific Languages","author":"Fowler Martin","year":"2011","unstructured":"Martin Fowler. 2011. Domain-Specific Languages. Addison-Wesley."},{"key":"e_1_3_1_91_2","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-45732-1_11"},{"key":"e_1_3_1_92_2","unstructured":"Galois Inc.2024. Cryptol. Retrieved from https:\/\/github.com\/GaloisInc\/cryptol"},{"key":"e_1_3_1_93_2","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"e_1_3_1_94_2","unstructured":"Paolo Giorgini et\u00a0al. 2020. STS Tool Website. Retrieved from https:\/\/www.sts-tool.eu\/downloads\/sts-tool"},{"key":"e_1_3_1_95_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.1982.10014"},{"key":"e_1_3_1_96_2","unstructured":"Oded Goldreich. 1998. Secure Multi-Party Computation. (1998)."},{"key":"e_1_3_1_97_2","doi-asserted-by":"crossref","unstructured":"Tony Gorschek Ewan D. Tempero and Lefteris Angelis. 2014. On the use of software design models in software development practice: An empirical investigation. J. Syst. Softw. 95 (2014) 176\u2013193.","DOI":"10.1016\/j.jss.2014.03.082"},{"key":"e_1_3_1_98_2","doi-asserted-by":"publisher","DOI":"10.1109\/HST.2019.8740840"},{"key":"e_1_3_1_99_2","unstructured":"Xiaolong Guo and Yier Jin. 2019. QIF-RTL Website. Retrieved from https:\/\/cadforassurance.org\/tools\/design-for-trust\/qif-rtl\/"},{"key":"e_1_3_1_100_2","doi-asserted-by":"publisher","DOI":"10.1109\/APSEC.2016.023"},{"key":"e_1_3_1_101_2","doi-asserted-by":"publisher","DOI":"10.1145\/1137627.1137634"},{"key":"e_1_3_1_102_2","doi-asserted-by":"publisher","DOI":"10.1109\/AINA.2009.139"},{"key":"e_1_3_1_103_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2011.09.014"},{"key":"e_1_3_1_104_2","doi-asserted-by":"publisher","DOI":"10.1145\/3183377.3183393"},{"key":"e_1_3_1_105_2","doi-asserted-by":"publisher","DOI":"10.1145\/3623476.3623527"},{"key":"e_1_3_1_106_2","volume-title":"CCS","author":"Henecka Wilko","year":"2010","unstructured":"Wilko Henecka, Stefan K\u00f6gl, Ahmad-Reza Sadeghi, Thomas Schneider, and Immo Wehrenberg. 2010. TASTY: Tool for automating secure two-party computations. In CCS."},{"key":"e_1_3_1_107_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICSE55347.2025.00184"},{"key":"e_1_3_1_108_2","doi-asserted-by":"crossref","unstructured":"Kevin Hermann Simon Schneider Catherine Tony Asli Yardim Sven Peldszus Thorsten Berger Riccardo Scandariato M Angela Sasse and Alena Naiakshina. 2025. A taxonomy of functional security features and how they can be located. Empir. Softw. Eng. 30 5 (2025) 117.","DOI":"10.1007\/s10664-025-10649-7"},{"key":"e_1_3_1_109_2","volume-title":"MODELS","author":"Hermans Felienne","year":"2009","unstructured":"Felienne Hermans, Martin Pinzger, and Arie van Deursen. 2009. Domain-specific languages in practice: A user study on the success factors. In MODELS."},{"key":"e_1_3_1_110_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-74835-9_35"},{"key":"e_1_3_1_111_2","doi-asserted-by":"publisher","DOI":"10.1145\/1868294.1868307"},{"issue":"2","key":"e_1_3_1_112_2","article-title":"Modeling and enforcing secure object flows in process-driven soas: An integrated model-driven approach","volume":"13","author":"Hoisl Bernhard","year":"2014","unstructured":"Bernhard Hoisl, Stefan Sobernig, and Mark Strembeck. 2014. Modeling and enforcing secure object flows in process-driven soas: An integrated model-driven approach. SoSyM 13, 2 (2014), 513\u2013548.","journal-title":"SoSyM"},{"issue":"6","key":"e_1_3_1_113_2","article-title":"P \\({}^{\\mbox{2}}\\) CySeMoL: Predictive, probabilistic cyber security modeling language","volume":"12","author":"Holm Hannes","year":"2015","unstructured":"Hannes Holm, Khurram Shahzad, Markus Buschle, and Mathias Ekstedt. 2015. P \\({}^{\\mbox{2}}\\) CySeMoL: Predictive, probabilistic cyber security modeling language. TDSC 12, 6 (2015), 626\u2013639.","journal-title":"TDSC"},{"key":"e_1_3_1_114_2","volume-title":"MPM@MoDELS","author":"Horst Andreas","year":"2013","unstructured":"Andreas Horst and Bernhard Rumpe. 2013. Towards Compositional Domain Specific Languages. In MPM@MoDELS."},{"key":"e_1_3_1_115_2","volume-title":"CIS","author":"Huan Liming","year":"2013","unstructured":"Liming Huan, Yang Yu, Liangshuang Lv, Shiying Li, and Chunhe Xia. 2013. A botnet-oriented collaborative defense scheme description language. In CIS."},{"key":"e_1_3_1_116_2","volume-title":"Profiles for the OASIS Security Assertion Markup Language (SAML) 2.0","author":"Hughes John","year":"2005","unstructured":"John Hughes et\u00a0al. 2005. Profiles for the OASIS Security Assertion Markup Language (SAML) 2.0. OASIS Standard. Organization for the Advancement of Structured Information Standards. Retrieved from http:\/\/docs.oasis-open.org\/security\/saml\/"},{"key":"e_1_3_1_117_2","doi-asserted-by":"publisher","DOI":"10.1109\/ECBS.2006.70"},{"key":"e_1_3_1_118_2","doi-asserted-by":"publisher","DOI":"10.1145\/3167132.3167436"},{"key":"e_1_3_1_119_2","unstructured":"International Organization for Standardization (ISO) and International Electrotechnical Commission (IEC). 2022. ISO\/IEC 27002:2022: Information Security Cybersecurity and Privacy Protection\u2014Information Security Controls."},{"key":"e_1_3_1_120_2","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.1997.601312"},{"key":"e_1_3_1_121_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-84800-044-5_8"},{"key":"e_1_3_1_122_2","volume-title":"ARES","author":"Johnson Pontus","year":"2018","unstructured":"Pontus Johnson, Robert Lagerstr\u00f6m, and Mathias Ekstedt. 2018. A meta language for threat modeling and attack simulations. In ARES."},{"key":"e_1_3_1_123_2","volume-title":"ARES","author":"Johnson Pontus","year":"2016","unstructured":"Pontus Johnson, Alexandre Vernotte, Mathias Ekstedt, and Robert Lagerstr\u00f6m. 2016. Pwnpr3d: An attack-graph-driven probabilistic threat-modeling approach. In ARES."},{"key":"e_1_3_1_124_2","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-45314-8_14"},{"key":"e_1_3_1_125_2","doi-asserted-by":"publisher","DOI":"10.1007\/3-540-45800-X_32"},{"key":"e_1_3_1_126_2","unstructured":"Jan J\u00fcrjens Julian Flake Sven Peldszus et\u00a0al. 2024. UMLsec. Retrieved from https:\/\/github.com\/CARiSMA-Tool\/carisma-tool"},{"key":"e_1_3_1_127_2","volume-title":"Rei : A Policy Language for the Me-Centric Project","author":"Kagal Lalana","year":"2002","unstructured":"Lalana Kagal. 2002. Rei : A Policy Language for the Me-Centric Project. Technical Report. UMBC."},{"key":"e_1_3_1_128_2","volume-title":"POLICY","author":"Kagal Lalana","year":"2003","unstructured":"Lalana Kagal, Timothy W. Finin, and Anupam Joshi. 2003. A policy language for a pervasive computing environment. In POLICY."},{"issue":"4","key":"e_1_3_1_129_2","article-title":"A framework for qualitative assessment of domain-specific languages","volume":"14","author":"Kahraman G\u00f6khan","year":"2015","unstructured":"G\u00f6khan Kahraman and Semih Bilgen. 2015. A framework for qualitative assessment of domain-specific languages. SoSyM 14, 4 (2015), 1505\u20131526.","journal-title":"SoSyM"},{"key":"e_1_3_1_130_2","unstructured":"Saffija Kasem-Madani and Michael Meier. 2015. Security and privacy policy languages: A survey categorization and gap identification. arXiv:1512.00201. Retrieved from https:\/\/arxiv.org\/abs\/1512.00201"},{"key":"e_1_3_1_131_2","doi-asserted-by":"publisher","DOI":"10.5220\/0007247901750182"},{"key":"e_1_3_1_132_2","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2017.38"},{"key":"e_1_3_1_133_2","unstructured":"Nadim Kobeissi Karthikeyan Bhargavan and Bruno Blanchet. 2022. Proscript. Retrieved from https:\/\/github.com\/inria-prosecco\/proscript-messaging"},{"key":"e_1_3_1_134_2","doi-asserted-by":"publisher","DOI":"10.5555\/646761.706156"},{"key":"e_1_3_1_135_2","doi-asserted-by":"publisher","DOI":"10.5555\/646764.703989"},{"key":"e_1_3_1_136_2","volume-title":"FAST","author":"Kordy Barbara","year":"2010","unstructured":"Barbara Kordy, Sjouke Mauw, Sasa Radomirovic, and Patrick Schweitzer. 2010. Foundations of attack-defense trees. In FAST."},{"key":"e_1_3_1_137_2","article-title":"Domain-specific languages: A systematic mapping study","volume":"71","author":"Kosar Tomaz","year":"2016","unstructured":"Tomaz Kosar, Sudev Bohra, and Marjan Mernik. 2016. Domain-specific languages: A systematic mapping study. IST 71 (2016).","journal-title":"IST"},{"key":"e_1_3_1_138_2","doi-asserted-by":"crossref","unstructured":"Markus Krausz Georg Land Jan Richter-Brockmann and Tim G\u00fcneysu. 2023. A holistic approach towards side-channel secure fixed-weight polynomial sampling. In Public Key Cryptography 2 (2023) 94\u2013124.","DOI":"10.1007\/978-3-031-31371-4_4"},{"key":"e_1_3_1_139_2","doi-asserted-by":"publisher","unstructured":"Markus Krausz Sven Peldszus Francesco Regazzoni Thorsten Berger and Tim G\u00fcneysu. 2025. 120 Domain-Specific Languages for Security (Supplementary Material). DOI:10.5281\/zenodo.15001996","DOI":"10.5281\/zenodo.15001996"},{"key":"e_1_3_1_140_2","unstructured":"KTH Network and Systems Engineering Group. 2020. CySeMoL Website. Retrieved from https:\/\/www.kth.se\/cs\/nse\/research\/software-systems-architecture-and-security\/projects\/old-projects\/cysemol"},{"key":"e_1_3_1_141_2","doi-asserted-by":"publisher","DOI":"10.1017\/S0960129512000266"},{"key":"e_1_3_1_142_2","doi-asserted-by":"publisher","DOI":"10.1145\/1377836.1377854"},{"key":"e_1_3_1_143_2","doi-asserted-by":"publisher","DOI":"10.1145\/3167132.3167336"},{"key":"e_1_3_1_144_2","doi-asserted-by":"publisher","DOI":"10.1145\/1851276.1851284"},{"key":"e_1_3_1_145_2","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2017.35"},{"key":"e_1_3_1_146_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2019.100219"},{"key":"e_1_3_1_147_2","doi-asserted-by":"publisher","DOI":"10.1145\/3605098.3636008"},{"key":"e_1_3_1_148_2","unstructured":"Vincent Laporte et\u00a0al. 2024. Jasmin. Retrieved from https:\/\/github.com\/jasmin-lang\/jasmin"},{"key":"e_1_3_1_149_2","doi-asserted-by":"publisher","DOI":"10.1109\/CMI48017.2019.8962144"},{"key":"e_1_3_1_150_2","doi-asserted-by":"publisher","DOI":"10.1109\/COMPSACW.2010.98"},{"key":"e_1_3_1_151_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833661"},{"key":"e_1_3_1_152_2","doi-asserted-by":"publisher","DOI":"10.1145\/2541940.2541947"},{"key":"e_1_3_1_153_2","doi-asserted-by":"publisher","DOI":"10.1145\/1993498.1993512"},{"key":"e_1_3_1_154_2","doi-asserted-by":"publisher","DOI":"10.3233\/JCS-15805"},{"key":"e_1_3_1_155_2","unstructured":"Jed Liu Michael D. George Owen Arden et\u00a0al. 2019. Fabric. Retrieved from https:\/\/github.com\/apl-cornell\/fabric"},{"key":"e_1_3_1_156_2","doi-asserted-by":"publisher","DOI":"10.1145\/1629575.1629606"},{"key":"e_1_3_1_157_2","doi-asserted-by":"publisher","DOI":"10.5555\/647246.719477"},{"key":"e_1_3_1_158_2","doi-asserted-by":"publisher","DOI":"10.1145\/968559.968563"},{"key":"e_1_3_1_159_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-12323-8"},{"key":"e_1_3_1_160_2","doi-asserted-by":"publisher","DOI":"10.2991\/icmmcce-15.2015.309"},{"key":"e_1_3_1_161_2","volume-title":"USENIX Security","author":"Malkhi Dahlia","year":"2004","unstructured":"Dahlia Malkhi, Noam Nisan, Benny Pinkas, and Yaron Sella1. 2004. A secure two-party computation system. In USENIX Security."},{"key":"e_1_3_1_162_2","unstructured":"Guido Mart\u00ednez Tahina Ramananandro Aseem Rastogi and Nikhil Swamy others. 2024. FStar. Retrieved from https:\/\/github.com\/FStarLang\/FStar"},{"key":"e_1_3_1_163_2","doi-asserted-by":"publisher","DOI":"10.1002\/smr.2457"},{"key":"e_1_3_1_164_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-05183-8_6"},{"key":"e_1_3_1_165_2","unstructured":"Raimundas Matulevicius Haralambos Mouratidis Nicolas Mayer Eric Dubois and Patrick Heymans. 2012. Syntactic and semantic extensions to secure tropos to support security risk management. J. Univers. Comput. Sci. 18 6 (2012) 816\u2013844."},{"issue":"2","key":"e_1_3_1_166_2","article-title":"Software Security","volume":"2","author":"McGraw G.","year":"2004","unstructured":"G. McGraw. 2004. Software Security. SP 2, 2 (2004), 80\u201383.","journal-title":"SP"},{"key":"e_1_3_1_167_2","unstructured":"Kent McLeod Anna Lyons Japheth Lim Stephen Sherratt et\u00a0al. 2024. CapDL. Retrieved from https:\/\/github.com\/seL4\/capdl"},{"key":"e_1_3_1_168_2","unstructured":"Andrew Meneely Ben Smith and Laurie Williams. 2021. iTrust Electronic Health Care System Case Study. Retrieved from https:\/\/github.com\/ncsu-csc326\/iTrust2"},{"key":"e_1_3_1_169_2","volume-title":"ARES","author":"Menzel Michael","year":"2009","unstructured":"Michael Menzel, Ivonne Thomas, and Christoph Meinel. 2009. Security requirements specification in service-oriented business process management. In ARES."},{"key":"e_1_3_1_170_2","doi-asserted-by":"publisher","DOI":"10.1145\/1118890.1118892"},{"key":"e_1_3_1_171_2","doi-asserted-by":"publisher","DOI":"10.1145\/582419.582426"},{"key":"e_1_3_1_172_2","doi-asserted-by":"publisher","DOI":"10.1007\/0-306-46998-7_25"},{"key":"e_1_3_1_173_2","doi-asserted-by":"publisher","DOI":"10.1109\/CSF.2012.30"},{"key":"e_1_3_1_174_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-16385-2_27"},{"key":"e_1_3_1_175_2","volume-title":"QRS","author":"Mohsin Muhammad","year":"2019","unstructured":"Muhammad Mohsin and Muhammad Umair Khan. 2019. Uml-Sr: A novel security requirements specification language. In QRS."},{"key":"e_1_3_1_176_2","unstructured":"Haris Mouratidis. 2015. SecureTROPOS Website. Retrieved from https:\/\/austria.omilab.org\/psm\/content\/sectro\/"},{"issue":"2","key":"e_1_3_1_177_2","article-title":"Secure tropos: A security-oriented extension of the tropos methodology","volume":"17","author":"Mouratidis Haralambos","year":"2007","unstructured":"Haralambos Mouratidis and Paolo Giorgini. 2007. Secure tropos: A security-oriented extension of the tropos methodology. SEKE 17, 2 (2007), 285\u2013309.","journal-title":"SEKE"},{"key":"e_1_3_1_178_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.is.2004.06.002"},{"key":"e_1_3_1_179_2","unstructured":"Andrew C. Myers Lantian Zheng Steve Zdancewic Stephen Chong and Nathaniel Nystrom. 2022. Jif. Retrieved from https:\/\/github.com\/apl-cornell\/jif"},{"key":"e_1_3_1_180_2","volume-title":"LISA","author":"Nakamura Yuichi","year":"2009","unstructured":"Yuichi Nakamura, Yoshiki Sameshima, and Toshihiro Tabata. 2009. Seedit: Selinux security policy configuration system with higher level language. In LISA."},{"key":"e_1_3_1_181_2","volume-title":"MODELSWARD","author":"Neto Edmilson Campos","year":"2013","unstructured":"Edmilson Campos Neto, Mar\u00edlia Aranha Freire, Uir\u00e1 Kulesza, Adorilson Bezerra, and Eduardo Aranha. 2013. Composition of domain specific modeling languages - an exploratory study. In MODELSWARD."},{"key":"e_1_3_1_182_2","doi-asserted-by":"crossref","unstructured":"Phu Hong Nguyen Max E. Kramer Jacques Klein and Yves Le Traon. 2015. An extensive systematic review on the model-driven development of secure systems. Inf. Softw. Technol. 68 (2015) 62\u201381.","DOI":"10.1016\/j.infsof.2015.08.006"},{"key":"e_1_3_1_183_2","doi-asserted-by":"publisher","DOI":"10.1145\/1255329.1255333"},{"key":"e_1_3_1_184_2","unstructured":"Aditya Oak et\u00a0al. 2022. \\(J_E\\) Secure Programming Language. Retrieved from https:\/\/github.com\/prg-grp\/je-lang"},{"key":"e_1_3_1_185_2","doi-asserted-by":"publisher","DOI":"10.1109\/CSF51468.2021.00037"},{"key":"e_1_3_1_186_2","unstructured":"OASIS. 2009. WS-SecurityPolicy. Retrieved from http:\/\/docs.oasis-open.org\/ws-sx\/ws-securitypolicy\/v1.3\/ws-securitypolicy.html"},{"key":"e_1_3_1_187_2","unstructured":"OASIS. 2021. Webiste of the OASIS eXtensible Access Control Markup Language (XACML) Technical Committee. Retrieved from https:\/\/www.oasis-open.org\/committees\/tc_home.php?wg_abbrev=xacml"},{"key":"e_1_3_1_188_2","volume-title":"ARES","author":"Paci Federica","year":"2013","unstructured":"Federica Paci, M. Carmen Fern\u00e1ndez Gago, and Francisco Moyano. 2013. Detecting insider threats: A trust-aware framework. In ARES."},{"key":"e_1_3_1_189_2","doi-asserted-by":"crossref","unstructured":"Elda Paja Fabiano Dalpiaz and Paolo Giorgini. 2015. Modelling and reasoning about security requirements in socio-technical systems. Data Knowl. Eng. 98 (2015) 123\u2013143.","DOI":"10.1016\/j.datak.2015.07.007"},{"key":"e_1_3_1_190_2","volume-title":"Extensible Access Control Markup Language (XACML)","author":"Parducci Bill","year":"2017","unstructured":"Bill Parducci and ChairHal Lockhart. 2017. Extensible Access Control Markup Language (XACML). OASIS Standard. Cisco Systems, IBM, Oracle, Red Hat, and SAP SE. Retrieved from https:\/\/www.oasis-open.org\/standard\/xacmlv3-0\/"},{"key":"e_1_3_1_191_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2009.11.005"},{"issue":"23","key":"e_1_3_1_192_2","article-title":"Bro: A system for detecting network intruders in real-time","volume":"31","author":"Paxson Vern","year":"1999","unstructured":"Vern Paxson. 1999. Bro: A system for detecting network intruders in real-time. CNTW 31, 23\u201324 (1999), 2435\u20132463.","journal-title":"CNTW"},{"key":"e_1_3_1_193_2","volume-title":"SP","author":"Pearce Hammond","year":"2022","unstructured":"Hammond Pearce, Baleegh Ahmad, Benjamin Tan, Brendan Dolan-Gavitt, and Ramesh Karri. 2022. Asleep at the keyboard? Assessing the security of github copilot\u2019s code contributions. In SP."},{"key":"e_1_3_1_194_2","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2019.00015"},{"key":"e_1_3_1_195_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-658-37665-9"},{"key":"e_1_3_1_196_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-59944-7_4"},{"key":"e_1_3_1_197_2","doi-asserted-by":"publisher","DOI":"10.1145\/3597926.3604924"},{"issue":"1","key":"e_1_3_1_198_2","article-title":"UMLsecRT: Reactive security monitoring of java applications with round-trip engineering","volume":"50","author":"Peldszus Sven","year":"2024","unstructured":"Sven Peldszus, Jens B\u00fcrger, and Jan J\u00fcrjens. 2024. UMLsecRT: Reactive security monitoring of java applications with round-trip engineering. TSE 50, 1 (2024), 16\u201347.","journal-title":"TSE"},{"key":"e_1_3_1_199_2","volume-title":"CCS","author":"Perry Neil","year":"2023","unstructured":"Neil Perry, Megha Srivastava, Deepak Kumar, and Dan Boneh. 2023. Do users write more insecure code with AI assistants?. In CCS."},{"key":"e_1_3_1_200_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cola.2023.101226"},{"key":"e_1_3_1_201_2","doi-asserted-by":"publisher","DOI":"10.1145\/3408987"},{"key":"e_1_3_1_202_2","doi-asserted-by":"publisher","DOI":"10.1145\/596980.596983"},{"key":"e_1_3_1_203_2","doi-asserted-by":"publisher","DOI":"10.1145\/3110261"},{"key":"e_1_3_1_204_2","unstructured":"Kyle Pullicino. 2014. Jif: Language-based information-flow security in java. arXiv:1412.8639. Retrieved from https:\/\/arxiv.org\/abs\/1412.8639"},{"key":"e_1_3_1_205_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-13739-6_20"},{"key":"e_1_3_1_206_2","volume-title":"ARES","author":"Raihan Mohammad Feroz","year":"2007","unstructured":"Mohammad Feroz Raihan and Mohammad Zulkernine. 2007. Asmlsec: An extension of abstract state machine language for attack scenario specification. In ARES."},{"key":"e_1_3_1_207_2","doi-asserted-by":"publisher","DOI":"10.1109\/AsianHOST53231.2021.9699640"},{"issue":"1","key":"e_1_3_1_208_2","article-title":"ACM SIGSOFT empirical standards","volume":"46","author":"Ralph Paul","year":"2021","unstructured":"Paul Ralph. 2021. ACM SIGSOFT empirical standards. S 46, 1 (2021), 19.","journal-title":"S"},{"key":"e_1_3_1_209_2","unstructured":"Aseem Rastogi Matthew Hammer and Michael Hicks. 2017. Wysteria. Retrieved from https:\/\/bitbucket.org\/aseemr\/wysteria"},{"key":"e_1_3_1_210_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.48"},{"key":"e_1_3_1_211_2","volume-title":"IICIS","author":"Ray Indrakshi","year":"2003","unstructured":"Indrakshi Ray, Na Li, Dae-Kyoo Kim, and Robert B. France. 2003. Using parameterized UML to specify and compose access control models. In IICIS."},{"key":"e_1_3_1_212_2","volume-title":"ICCD","author":"Reimann Lennart M.","year":"2021","unstructured":"Lennart M. Reimann, Luca Hanel, Dominik Sisejkovic, Farhad Merchant, and Rainer Leupers. 2021. Qflow: Quantitative information flow for security-aware hardware design in verilog. In ICCD."},{"key":"e_1_3_1_213_2","volume-title":"NDSS","author":"Ribeiro Carlos","year":"2001","unstructured":"Carlos Ribeiro, Andr\u00e9 Z\u00faquete, Paulo Ferreira, and Paulo Abadie Guedes. 2001. SPL: An access control language for security policies and complex constraints. In NDSS."},{"key":"e_1_3_1_214_2","doi-asserted-by":"publisher","DOI":"10.1109\/ICMEAE.2017.20"},{"key":"e_1_3_1_215_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-45741-3_22"},{"key":"e_1_3_1_216_2","volume-title":"HCI","author":"Rodrigues Ildevana Poltronieri","year":"2017","unstructured":"Ildevana Poltronieri Rodrigues, M\u00e1rcia de Borba Campos, and Avelino F. Zorzo. 2017. Usability evaluation of domain-specific languages: A systematic literature review. In HCI."},{"issue":"4","key":"e_1_3_1_217_2","article-title":"A BPMN extension for the modeling of security requirements in business processes","volume":"90","author":"Rodr\u00edguez Alfonso","year":"2007","unstructured":"Alfonso Rodr\u00edguez, Eduardo Fern\u00e1ndez-Medina, and Mario Piattini. 2007. A BPMN extension for the modeling of security requirements in business processes. TROIS E90-D, 4 (2007), 745\u2013752.","journal-title":"TROIS"},{"key":"e_1_3_1_218_2","volume-title":"MODELSWARD","author":"Roudier Yves","year":"2015","unstructured":"Yves Roudier and Ludovic Apvrille. 2015. SysML-Sec \u2013 A model driven approach for designing safe and secure systems. In MODELSWARD."},{"key":"e_1_3_1_219_2","doi-asserted-by":"publisher","DOI":"10.1109\/INDICO.2004.1497807"},{"issue":"131","key":"e_1_3_1_220_2","article-title":"Guidelines for conducting and reporting case study research in software engineering","volume":"14","author":"Runeson Per","year":"2009","unstructured":"Per Runeson and Martin H\u00f6st. 2009. Guidelines for conducting and reporting case study research in software engineering. EMSE 14, 131 (2009), 131\u2013164.","journal-title":"EMSE"},{"issue":"1","key":"e_1_3_1_221_2","article-title":"Language-based information-flow security","volume":"21","author":"Sabelfeld Andrei","year":"2003","unstructured":"Andrei Sabelfeld and Andrew C. Myers. 2003. Language-based information-flow security. JSAC 21, 1 (2003), 5\u201319.","journal-title":"JSAC"},{"key":"e_1_3_1_222_2","doi-asserted-by":"publisher","DOI":"10.1109\/35.312842"},{"key":"e_1_3_1_223_2","doi-asserted-by":"publisher","DOI":"10.1109\/ESPRE51200.2020.00007"},{"key":"e_1_3_1_224_2","doi-asserted-by":"publisher","DOI":"10.1145\/2642803.2642821"},{"issue":"5","key":"e_1_3_1_225_2","article-title":"Modelling context-aware rbac models for mobile business processes","volume":"6","author":"Schefer-Wenzl Sigrid","year":"2013","unstructured":"Sigrid Schefer-Wenzl and Mark Strembeck. 2013. Modelling context-aware rbac models for mobile business processes. IJWMC 6, 5 (2013), 448\u2013462.","journal-title":"IJWMC"},{"issue":"10","key":"e_1_3_1_226_2","article-title":"Model-driven specification and enforcement of RBAC break-glass policies for process-aware information systems","volume":"56","author":"Schefer-Wenzl Sigrid","year":"2014","unstructured":"Sigrid Schefer-Wenzl and Mark Strembeck. 2014. Model-driven specification and enforcement of RBAC break-glass policies for process-aware information systems. IST 56, 10 (2014), 1289\u20131308.","journal-title":"IST"},{"issue":"4","key":"e_1_3_1_227_2","article-title":"Modeling support for role-based delegation in process-aware information systems","volume":"6","author":"Schefer-Wenzl Sigrid","year":"2014","unstructured":"Sigrid Schefer-Wenzl and Mark Strembeck. 2014. Modeling support for role-based delegation in process-aware information systems. BISE 6, 4 (2014), 215\u2013237.","journal-title":"BISE"},{"key":"e_1_3_1_228_2","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom\/BigDataSE.2018.00052"},{"key":"e_1_3_1_229_2","unstructured":"SELinux Project. 2023. SELinux Common Intermediate Language (CIL) in the SELinux Userspace. Retrieved from https:\/\/github.com\/SELinuxProject\/selinux\/tree\/main\/libsepol\/cil"},{"key":"e_1_3_1_230_2","unstructured":"Aashish Sharma Christian Kreibich Johanna Amann Fatema Bannat Wala Keith Lehigh Kelley Misata Robin Sommer Seth Grover Vern Paxson et\u00a0al. 2024. Zeek. Retrieved from https:\/\/github.com\/zeek\/zeek"},{"key":"e_1_3_1_231_2","volume-title":"MODSEC","author":"Shostack Adam","year":"2008","unstructured":"Adam Shostack. 2008. Experiences threat modeling at microsoft. In MODSEC."},{"key":"e_1_3_1_232_2","unstructured":"Vincent Simonet. 2003. Flow Caml Website. Retrieved from http:\/\/cristal.inria.fr\/simonet\/soft\/flowcaml\/"},{"key":"e_1_3_1_233_2","doi-asserted-by":"publisher","DOI":"10.4338\/ACI-2016-04-SOA-0064"},{"key":"e_1_3_1_234_2","unstructured":"SINTEF. 2014. CORAS Website. Retrieved from https:\/\/coras.tools\/"},{"key":"e_1_3_1_235_2","doi-asserted-by":"publisher","DOI":"10.1109\/NTMS.2011.5721143"},{"key":"e_1_3_1_236_2","unstructured":"Gary Soeller Brian Johannesmeyer et\u00a0al. 2019. FaCT. Retrieved from https:\/\/github.com\/PLSysSec\/FaCT"},{"key":"e_1_3_1_237_2","volume-title":"ACSAC","author":"Sohr Karsten","year":"2008","unstructured":"Karsten Sohr, Tanveer Mustafa, Xinyu Bao, and Gail-Joon Ahn. 2008. Enforcing role-based access control policies in web services with UML and OCL. In ACSAC."},{"key":"e_1_3_1_238_2","doi-asserted-by":"publisher","DOI":"10.1109\/JSYST.2012.2221853"},{"key":"e_1_3_1_239_2","volume-title":"IAS","author":"Souissi Samih","year":"2015","unstructured":"Samih Souissi. 2015. Toward a novel rule-based attack description and response language. In IAS."},{"key":"e_1_3_1_240_2","doi-asserted-by":"publisher","DOI":"10.1145\/2209249.2209263"},{"key":"e_1_3_1_241_2","volume-title":"ICIT","author":"Stepien Bernard","year":"2012","unstructured":"Bernard Stepien, Liam Peyton, and Pulei Xiong. 2012. Using Ttcn-3 As a modeling language for web penetration testing. In ICIT."},{"key":"e_1_3_1_242_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2008.29"},{"key":"e_1_3_1_243_2","unstructured":"Aditya OakYuzhe Tang et\u00a0al. 2015. FairplayMP. Retrieved from https:\/\/github.com\/FaiplayMP\/FairplayMP"},{"key":"e_1_3_1_244_2","volume-title":"ICCCI","author":"Thi Kim Tuyen Le","year":"2012","unstructured":"Kim Tuyen Le Thi, Tran Khanh Dang, Pierre Kuonen, and Houda Chabbi Drissi. 2012. STRoBAC - spatial temporal role based access control. In ICCCI."},{"key":"e_1_3_1_245_2","volume-title":"CSF","author":"nas Carlos Tom\u2019e Corti","year":"2020","unstructured":"Carlos Tom\u2019e Corti nas, Marco Vassena, and Alejandro Russo. 2020. Securing asynchronous exceptions. In CSF."},{"key":"e_1_3_1_246_2","doi-asserted-by":"publisher","DOI":"10.1109\/SCC.2007.137"},{"key":"e_1_3_1_247_2","volume-title":"POLICY","author":"Trabelsi Slim","year":"2011","unstructured":"Slim Trabelsi, Jakub Sendor, and Stefanie Reinicke. 2011. PPL: Primelife privacy policy engine. In POLICY."},{"issue":"1","key":"e_1_3_1_248_2","article-title":"Checking security compliance between models and code","volume":"22","author":"Tuma Katja","year":"2023","unstructured":"Katja Tuma, Sven Peldszus, Daniel Str\u00fcber, Riccardo Scandariato, and Jan J\u00fcrjens. 2023. Checking security compliance between models and code. SoSyM 22, 1 (2023), 273\u2013296.","journal-title":"SoSyM"},{"key":"e_1_3_1_249_2","volume-title":"RE","author":"T\u00fcrpe Sven","year":"2017","unstructured":"Sven T\u00fcrpe. 2017. The trouble with security requirements. In RE."},{"key":"e_1_3_1_250_2","doi-asserted-by":"publisher","DOI":"10.1002\/sec.411"},{"issue":"20","key":"e_1_3_1_251_2","article-title":"Engineering security into distributed systems: A survey of methodologies","volume":"18","author":"Uzunov Anton V.","year":"2012","unstructured":"Anton V. Uzunov, Eduardo B. Fern\u00e1ndez, and Katrina Falkner. 2012. Engineering security into distributed systems: A survey of methodologies. JUCS 18, 20 (2012), 2920\u20133006.","journal-title":"JUCS"},{"key":"e_1_3_1_252_2","doi-asserted-by":"crossref","unstructured":"Anna Vacca Andrea Di Sorbo Corrado Aaron Visaggio and Gerardo Canfora. 2021. A systematic literature review of blockchain and smart contract development: Techniques tools and open challenges. J. Syst. Softw. 174 (2021) 110891.","DOI":"10.1016\/j.jss.2020.110891"},{"issue":"3","key":"e_1_3_1_253_2","article-title":"Design notations for secure software: A systematic literature review","volume":"16","author":"Berghe Alexander van Den","year":"2017","unstructured":"Alexander van Den Berghe, Riccardo Scandariato, Koen Yskout, and Wouter Joosen. 2017. Design notations for secure software: A systematic literature review. SoSyM 16, 3 (2017), 809\u2013831.","journal-title":"SoSyM"},{"key":"e_1_3_1_254_2","doi-asserted-by":"publisher","DOI":"10.1145\/3423166"},{"key":"e_1_3_1_255_2","volume-title":"ICPE","author":"Kistowski J\u00f3akim von","year":"2015","unstructured":"J\u00f3akim von Kistowski, Jeremy A. Arnold, Karl Huppler, Klaus-Dieter Lange, John L. Henning, and Paul Cao. 2015. How to build a benchmark. In ICPE."},{"key":"e_1_3_1_256_2","volume-title":"FMCO","author":"Oheimb David von","year":"2010","unstructured":"David von Oheimb and Sebastian M\u00f6dersheim. 2010. ASLan++ \u2013 a formal security specification language for distributed systems. In FMCO."},{"key":"e_1_3_1_257_2","volume-title":"CSF","author":"Pedersen Mathias Vorreiter","year":"2019","unstructured":"Mathias Vorreiter Pedersen and Aslan Askarov. 2019. Static enforcement of security in runtime systems. In CSF."},{"key":"e_1_3_1_258_2","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-031-23669-3"},{"key":"e_1_3_1_259_2","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2023.103284"},{"key":"e_1_3_1_260_2","doi-asserted-by":"publisher","DOI":"10.1145\/2601248.2601268"},{"key":"e_1_3_1_261_2","volume-title":"Modellierung","author":"Wolter Christian","year":"2008","unstructured":"Christian Wolter, Michael Menzel, and Christoph Meinel. 2008. Modelling security goals in business processes. In Modellierung."},{"issue":"4","key":"e_1_3_1_262_2","article-title":"Model-driven business process security requirement specification","volume":"55","author":"Wolter Christian","year":"2009","unstructured":"Christian Wolter, Michael Menzel, Andreas Schaad, Philip Miseldine, and Christoph Meinel. 2009. Model-driven business process security requirement specification. JSA 55, 4 (2009), 211\u2013223.","journal-title":"JSA"},{"issue":"6","key":"e_1_3_1_263_2","article-title":"A framework and language support for dynamic security policy in service-oriented architecture","volume":"30","author":"Wu-Lee Chi","year":"2014","unstructured":"Chi Wu-Lee and Gwan-Hwan Hwang. 2014. A framework and language support for dynamic security policy in service-oriented architecture. JISE 30, 6 (2014), 1887\u20131903.","journal-title":"JISE"},{"key":"e_1_3_1_264_2","unstructured":"Max W\u00e4llstedt et\u00a0al. 2024. MAL Toolbox. Retrieved from https:\/\/github.com\/mal-lang"},{"key":"e_1_3_1_265_2","unstructured":"Jian Xiang. 2021. Co-Inflow. Retrieved from https:\/\/github.com\/HarvardPL\/Co-InflowPrototype"},{"key":"e_1_3_1_266_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP40001.2021.00002"},{"key":"e_1_3_1_267_2","volume-title":"VL\/HCC","author":"Xie Jing","year":"2011","unstructured":"Jing Xie, Heather Richter Lipford, and Bill Chu. 2011. Why do programmers make security errors?. In VL\/HCC."},{"key":"e_1_3_1_268_2","unstructured":"Himainu Ynakam. 2008. SEEdit Website. Retrieved from https:\/\/seedit.sourceforge.net\/"},{"key":"e_1_3_1_269_2","volume-title":"FedCSIS","author":"Zawoad Shams","year":"2013","unstructured":"Shams Zawoad, Marjan Mernik, and Ragib Hasan. 2013. FAL: A forensics aware language for secure logging. In FedCSIS."},{"key":"e_1_3_1_270_2","doi-asserted-by":"publisher","DOI":"10.1145\/2694344.2694372"},{"key":"e_1_3_1_271_2","doi-asserted-by":"publisher","DOI":"10.1109\/APSEC48747.2019.00064"}],"container-title":["ACM Computing Surveys"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3802817","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,4,27]],"date-time":"2026-04-27T09:32:40Z","timestamp":1777282360000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3802817"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,4,25]]},"references-count":270,"journal-issue":{"issue":"11","published-print":{"date-parts":[[2026,8,30]]}},"alternative-id":["10.1145\/3802817"],"URL":"https:\/\/doi.org\/10.1145\/3802817","relation":{},"ISSN":["0360-0300","1557-7341"],"issn-type":[{"value":"0360-0300","type":"print"},{"value":"1557-7341","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026,4,25]]},"assertion":[{"value":"2024-08-08","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2026-03-03","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2026-04-25","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}