Security Injections@Towson: Integrating Secure Coding into Introductory Computer Science Courses
Security Injections@Towson: Integrating Secure Coding into Introductory Computer Science Courses
复制标题
安全注入@Towson:将安全编码集成到计算机科学入门课程中
DOI:
--
复制
发表时间:
2016
期刊:
影响因子:
--
通讯作者:
Siddharth Kaza
中科院分区:
文献类型:
--
作者:
Blair Taylor;Siddharth Kaza
Despite the critical societal importance of computer security, security is not well integrated into the undergraduate computing curriculum. Security classes and tracks treat security issues as separable topics as opposed to fundamental issues that pervade all aspects of software development. Recently, there has been an increasing focus on security as a cross-cutting concern across the computer science curriculum. The Security Injections@Towson project provides resources and effective strategies to incorporate secure coding in the early programming classes. We describe the development, assessment, and dissemination of more than 40 lab-based security injection modules designed to be injected into courses with minimal impact on the curriculum. We include assessment results from 1,135 students across five diverse institutions demonstrating that the security injections help students retain, comprehend, and apply secure coding concepts in the introductory programming courses.