• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Scopus
  4. Supporting Software Engineers in IT Security and Privacy through Automated Knowledge Discovery
 
  • Details
  • Full
Options
2025
Conference Paper
Title

Supporting Software Engineers in IT Security and Privacy through Automated Knowledge Discovery

Abstract
Security and privacy are increasingly essential concepts in software engineering. New threats and corresponding countermeasures are continuously discovered. Concurrently, projects are becoming more complex and are exposed to a greater number of threats. This presents a significant challenge for software engineers. As a result, security and privacy are often neglected due to a lack of knowledge, limited time, and financial constraints. While systematic literature reviews exist to address the increasing volume of publications, software engineers still require up-to-date knowledge of current threats and measures. This paper presents an automated, time-efficient, and cost-effective method for discovering knowledge from state-of-the-art literature and project artifacts, such as design documents. The presented method utilizes Large Language Models (LLMs) for data extraction and is demonstrated through a prototypical implementation and evaluation. This evaluation involves security and privacy in open-access scientific publications and project documentation from European Union research and development projects. The extracted knowledge is used to populate a quality model that is specifically designed to provide software engineers with information that helps them apply the findings. This quality model offers software engineers valuable, up-to-date insights into security and privacy, bridging the gap between scientific research and practical applications.
Author(s)
Ehl, Marco
Universität Koblenz
Ahmadian, Amir Shayan
Universität Koblenz
Großer, Katharina
Universität Koblenz
Elsofi, Duaa Adel Ali
Universität Koblenz
Herrmann, Marc
Gottfried Wilhelm Leibniz Universität Hannover
Specht, Alexander
Gottfried Wilhelm Leibniz Universität Hannover
Schneider, Kurt
Gottfried Wilhelm Leibniz Universität Hannover
Jürjens, Jan  
Fraunhofer-Institut für Software- und Systemtechnik ISST  
Mainwork
40th Annual ACM Symposium on Applied Computing, SAC 2025  
Conference
Symposium on Applied Computing 2025  
Open Access
DOI
10.1145/3672608.3707798
Additional link
Full text
Language
English
Fraunhofer-Institut für Software- und Systemtechnik ISST  
Keyword(s)
  • knowledge discovery

  • large language model

  • privacy

  • quality model

  • security

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024