PROFES 2023
Sun 10 - Wed 13 December 2023 Dornbirn, Austria
Tue 12 Dec 2023 15:50 - 16:00 at W211 - Security, Vulnerabilities, and Human Factors Chair(s): Rahul Mohanani

This paper presents a Rapid Review (RR) conducted to identify and characterize existing approaches and methods that discover, fix, and manage vulnerabilities in Embedded, Cyber-Physical, and Internet-of-Things systems and software (ESs hereafter). In the last years, a growing interest concerned the adoption of ESs in different domains (e.g., automotive, healthcare) and with different purposes. Modern ESs are heterogeneous, computationally powerful, connected, and intelligent systems characterized by many technologies, devices, and an extensive use of embedded software (SW). Adopting software that could emulate or substitute hardware (HD) components makes the ESs flexible, tunable, and less costly but demands attention to security aspects such as SW vulnerabilities. Vulnerabilities can be exploited by attackers and compromise entire systems. The findings of our RR emerge from 61 papers and can be summarized as follows: (i) complex and connected ESs are studied especially for autonomous vehicles and robots; (ii) new methods and approaches are proposed mainly to discover software-vulnerabilities related to memory management in ES firmware software; and (iii) most of the proposed methods apply fuzzy-based dynamic analysis to binary and executable files of ES software.

Tue 12 Dec

Displayed time zone: Amsterdam, Berlin, Bern, Rome, Stockholm, Vienna change

15:30 - 16:30
Security, Vulnerabilities, and Human FactorsResearch Papers / Organization / Short Papers and Posters / Industry Papers at W211
Chair(s): Rahul Mohanani University of Jyväskylä
15:30
10m
Research paper
Social Sustainability Approaches for Software Development: A Systematic Literature Review
Research Papers
Ana Carolina Moises de Souza , Daniela S. Cruzes Norwegian University of Science and Technology, Norway, Letizia Jaccheri Norwegian University of Science and Technology (NTNU), John Krogstie
15:40
10m
Research paper
Evaluating Microservice Organizational Coupling based on Cross-service Contribution
Research Papers
Xiaozhou Li University of Oulu, Dario Amoroso d'Aragona Tampere University, Davide Taibi University of Oulu and Tampere University
15:50
10m
Short-paper
A Rapid Review on Software Vulnerabilities and Embedded, Cyber-Physical, and IoT Systems
Short Papers and Posters
Alessandro Marchetto Università di Trento, Giuseppe Scanniello University of Salerno
16:00
10m
Industry talk
The Testing Hopscotch Model – Six Complementary Profiles Replacing the Perfect All-Round Tester
Industry Papers
Torvald Mårtensson Saab AB, Kristian Sandahl Linköping University
16:10
10m
Research paper
On Fixing Bugs: Do Personality Traits Matter?
Research Papers
Simone Romano University of Salerno, Giuseppe Scanniello University of Salerno, Maria Teresa Baldassarre Department of Computer Science, University of Bari , Danilo Caivano University of Bari, Genoveffa Tortora
16:20
10m
Research paper
Continuous Experimentation and Human Factors An Exploratory Study
Research Papers
Amna Pir Muhammad Chalmers | University of Gothenburg, Eric Knauss Chalmers | University of Gothenburg, Jonas Bärgman Chalmers University of Technology, Alessia Knauss Zenseact AB