EDBT 2026 Demo / reviewers in the wild / expert
Thein Than Tun
dblp:86/404
· DBLP profile ↗
18ranked-venue papers
7as first author
0since 2021 · last 2020
0000-0002-2131-811XORCID · corroborated
Domains — the database's venue-derived domains; a paper can count in several
Software engineering, systems software and programming languages · 15 · 6 first-authorApplied, interdisciplinary, general and emerging computing · 3 · 1 first-authorArtificial intelligence and machine learning · 1 · 1 first-authorComputer networks · 1 · 1 first-authorDatabases, data management, data science and information retrieval · 1
Expertise — from the expertise taxonomy: the topics of the expert's papers under the CCF categories. A weight counts papers with recency: 1 for a paper about the topic, 0.3 when the topic is its context, halved every five years.
| Software engineering, system software, and programming languages
3 papers |
Empirical software engineering · 83% Software maintenance and evolution · 13% Program analysis · 4% | |
| Network and information security
1 paper |
Web and mobile security · 100% | |
| Databases, data mining, and information retrieval
1 paper |
Data mining · 100% |
Topics — the 6 heaviest of 6, each with the papers that count most for it
| Topic | Weight | Papers | Last | Evidence papers |
|---|---|---|---|---|
Empirical software engineering
developer studies |
0.4 | 1 | 2020 | Schrödinger's security: opening the box on app developers' security rationale · ICSE 2020 |
Empirical software engineering › mining software repositories
defect prediction |
0.4 | 1 | 2019 | Text Filtering and Ranking for Security Bug Report Prediction · IEEE Trans. Software Eng. 2019 |
Web and mobile security
mobile security |
0.1 | 1 | 2020 | Schrödinger's security: opening the box on app developers' security rationale · ICSE 2020 |
Software maintenance and evolution
program differencing |
0.1 | 1 | 2011 | Specifying and detecting meaningful changes in programs · ASE 2011 |
Data mining › text mining
text classification |
0.1 | 1 | 2019 | Text Filtering and Ranking for Security Bug Report Prediction · IEEE Trans. Software Eng. 2019 |
Program analysis
static analysis |
0.0 | 1 | 2011 | Specifying and detecting meaningful changes in programs · ASE 2011 |
Methods — techniques the papers use, named apart from their topics
qualitative interviews · 0.9text-based prediction · 0.8ranking · 0.8filtering · 0.8program normalization · 0.1grammar annotations · 0.1clone removal · 0.1
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2020 | Schrödinger's security: opening the box on app developers' security rationaleabstractResearch has established the wide variety of security failures in mobile apps, their consequences, and how app developers introduce or exacerbate them. What is not well known is why developers do so---what is the rationale underpinning the decisions they make which eventually strengthen or weaken app security? This is all the more complicated in modern app development's increasingly diverse demographic: growing numbers of independent, solo, or small team developers who do not have the organizational structures and support that larger software development houses enjoy. Dirk van der Linden, Pauline Anthonysamy, Bashar Nuseibeh, Thein Than Tun, Marian Petre, Mark Levine, John N. Towse, Awais Rashid |
ICSE | 4 |
| 2020 | OASIS: Weakening User Obligations for Security-critical SystemsabstractSecurity-critical systems typically place some requirements on the behaviour of their users, obliging them to follow certain instructions when using those systems. Security vulnerabilities can arise when users do not fully satisfy their obligations. In this paper, we propose an approach that improves system security by ensuring that attack scenarios are mitigated even when the users deviate from their expected behaviour. The approach uses structured transition systems to present and reason about user obligations. The aim is to identify potential vulnerabilities by weakening the assumptions on how the user will behave. We present an algorithm that combines iterative abstraction and controller synthesis to produce a new software specification that maintains the satisfaction of security requirements while weakening user obligations. We demonstrate the feasibility of our approach through two examples from the e-voting and e-commerce domains. Thein Than Tun, Amel Bennaceur, Bashar Nuseibeh |
RE | 1 |
| 2019 | Text Filtering and Ranking for Security Bug Report PredictionabstractSecurity bug reports can describe security critical vulnerabilities in software products. Bug tracking systems may contain thousands of bug reports, where relatively few of them are security related. Therefore finding unlabelled security bugs among them can be challenging. To help security engineers identify these reports quickly and accurately, text-based prediction models have been proposed. These can often mislabel security bug reports due to a number of reasons such as class imbalance, where the ratio of non-security to security bug reports is very high. More critically, we have observed that the presence of security related keywords in both security and non-security bug reports can lead to the mislabelling of security bug reports. This paper proposes FARSEC, a framework for filtering and ranking bug reports for reducing the presence of security related keywords. Before building prediction models, our framework identifies and removes non-security bug reports with security related keywords. We demonstrate that FARSEC improves the performance of text-based prediction models for security bug reports in 90 percent of cases. Specifically, we evaluate it with 45,940 bug reports from Chromium and four Apache projects. With our framework, we mitigate the class imbalance issue and reduce the number of mislabelled security bug reports by 38 percent. Fayola Peters, Thein Than Tun, Yijun Yu 0001, Bashar Nuseibeh |
IEEE Trans. Software Eng. | 2 |
| 2018 | Feature-Driven Mediator Synthesis: Supporting Collaborative Security in the Internet of ThingsabstractAs the number, complexity, and heterogeneity of connected devices in the Internet of Things (IoT) increase, so does our need to secure these devices, the environment in which they operate, and the assets they manage or control. Collaborative security exploits the capabilities of these connected devices and opportunistically composes them to protect assets from potential harm. By dynamically composing these capabilities, collaborative security implements the security controls that satisfy both security and non-security requirements. However, this dynamic composition is often hampered by the heterogeneity of the devices available in the environment and the diversity of their behaviours. In this article, we present a systematic, tool-supported approach for collaborative security where the analysis of requirements drives the opportunistic composition of capabilities to realise the appropriate security control in the operating environment. This opportunistic composition is supported through a combination of feature modelling and mediator synthesis. We use features and transition systems to represent and reason about capabilities and requirements. We formulate the selection of the optimal set of features to implement adequate security control as a multi-objective constrained optimisation problem and use constraint programming to solve it efficiently. The selected features are then used to scope the behaviours of the capabilities and thereby restrict the state space for synthesising the appropriate mediator. The synthesised mediator coordinates the behaviours of the capabilities to satisfy the behaviour specified by the security control. Our approach ensures that the implemented security controls are the optimal ones, given the capabilities available in the operating environment. We demonstrate the validity of our approach by implementing a feature-driven mediation for collaborative security tool and applying it to a collaborative robots case study. Amel Bennaceur, Thein Than Tun, Arosha K. Bandara, Yijun Yu 0001, Bashar Nuseibeh |
ACM Trans. Cyber Phys. Syst. | 2 |
| 2015 | Automated analysis of security requirements through risk-based argumentation
Yijun Yu 0001, Virginia N. L. Franqueira, Thein Than Tun, Roel J. Wieringa, Bashar Nuseibeh |
J. Syst. Softw. | 3 |
| 2014 | Traceability for Adaptive Information Security in the CloudabstractOne of the key challenges in cloud computing is the security of the consumer data stored and processed by cloud machines. When the usage context of a cloud application changes, or when the context is unknown, there is a risk that security policies are violated. To minimize this risk, cloud applications need to be engineered to adapt their security policies to maintain satisfaction of security requirements despite changes in their usage context. We call such adaptation capability Adaptive Information Security. The paper argues that one of the prerequisites to adaptive information security is the use of traceability as a means to understanding the relationship between security requirements and security policies. Using an example, we motivate the need for improving traceability in the development of cloud applications. Armstrong Nhlabatsi, Thein Than Tun, Niamul Khan, Yijun Yu 0001, Arosha K. Bandara, Khaled M. Khan, Bashar Nuseibeh |
IEEE CLOUD | 2 |
| 2013 | Requirements-driven adaptive digital forensicsabstractWe propose the use of forensic requirements to drive the automation of a digital forensics process. We augment traditional reactive digital forensics processes with proactive evidence collection and analysis activities, and provide immediate investigative suggestions before an investigation starts. These activities adapt depending on suspicious events, which in turn might require the collection and analysis of additional evidence. The reactive activities of a traditional digital forensics process are also adapted depending on the investigation findings. Liliana Pasquale, Yijun Yu 0001, Mazeiar Salehie, Luca Cavallaro, Thein Than Tun, Bashar Nuseibeh |
RE | 5 |
| 2013 | Specifying software features for composition: A tool-supported approach
Thein Than Tun, Robin C. Laney, Yijun Yu 0001, Bashar Nuseibeh |
Comput. Networks | 1 |
| 2012 | Privacy arguments: Analysing selective disclosure requirements for mobile applicationsabstractPrivacy requirements for mobile applications offer a distinct set of challenges for requirements engineering. First, they are highly dynamic, changing over time and locations, and across the different roles of agents involved and the kinds of information that may be disclosed. Second, although some general privacy requirements can be elicited a priori, users often refine them at runtime as they interact with the system and its environment. Selectively disclosing information to appropriate agents is therefore a key privacy management challenge, requiring carefully formulated privacy requirements amenable to systematic reasoning. In this paper, we introduce privacy arguments as a means of analysing privacy requirements in general and selective disclosure requirements (that are both content- and context-sensitive) in particular. Privacy arguments allow individual users to express personal preferences, which are then used to reason about privacy for each user under different contexts. At runtime, these arguments provide a way to reason about requirements satisfaction and diagnosis. Our proposed approach is demonstrated and evaluated using the privacy requirements of BuddyTracker, a mobile application we developed as part of our overall research programme. Thein Than Tun, Arosha K. Bandara, Blaine A. Price, Yijun Yu 0001, Charles B. Haley, Inah Omoronyia, Bashar Nuseibeh |
RE | 1 |
| 2011 | Specifying and detecting meaningful changes in programsabstractSoftware developers are often interested in particular changes in programs that are relevant to their current tasks: not all changes to evolving software are equally important. However, most existing differencing tools, such as diff, notify developers of more changes than they wish to see. In this paper, we propose a technique to specify and automatically detect only those changes in programs deemed meaningful, or relevant, to a particular development task. Using four elementary annotations on the grammar of any programming language, namely Ignore, Order, Prefer and Scope, developers can specify, with limited effort, the type of change they wish to detect. Our algorithms use these annotations to transform the input programs into a normalised form, and to remove clones across different normalised programs in order to detect non-trivial and relevant differences. We evaluate our tool on a benchmark of programs to demonstrate its improved precision compared to other differencing approaches. Yijun Yu 0001, Thein Than Tun, Bashar Nuseibeh |
ASE | 2 |
| 2011 | Risk and argument: A risk-based argumentation method for practical securityabstractWhen showing that a software system meets certain security requirements, it is often necessary to work with formal and informal descriptions of the system behavior, vulnerabilities, and threats from potential attackers. In earlier work, Haley et al. [1] showed structured argumentation could deal with such mixed descriptions. However, incomplete and uncertain information, and limited resources force practitioners to settle for good-enough security. To deal with these conditions of practice, we extend the method of Haley et al. with risk assessment. The proposed method, RISA (RIsk assessment in Security Argumentation), uses public catalogs of security expertise to support the risk assessment, and to guide the security argumentation in identifying rebuttals and mitigations for security requirements satisfaction. We illustrate RISA with a realistic example of PIN Entry Device. Virginia N. L. Franqueira, Thein Than Tun, Yijun Yu 0001, Roel J. Wieringa, Bashar Nuseibeh |
RE | 2 |
| 2011 | OpenArgue: Supporting argumentation to evolve secure software systemsabstractWhen software systems are verified against security requirements, formal and informal arguments provide a structure for organizing the software artifacts. Our recent work on the evolution of security-critical software systems demonstrates that our argumentation technique is useful in limiting the scope of change and in identifying changes to security properties. In support of this work, we have developed OpenArgue, a tool for syntax checking, visualizing, formalizing, and reasoning about incremental arguments. OpenArgue has been integrated with requirements engineering tools for Problem Frames and i∗, and applied to an Air Traffic Management (ATM) case study. Yijun Yu 0001, Thein Than Tun, Alessandra Tedeschi, Virginia N. L. Franqueira, Bashar Nuseibeh |
RE | 2 |
| 2010 | An NFR Pattern Approach to Dealing with NFRsabstractNon-functional requirements (NFRs), such as security and cost, are generally subjective and oftentimes synergistic or conflicting with each other. Properly dealing with such NFRs requires a large body of knowledge – goals to be achieved, problems or obstacles to be avoided, alternative solutions to mitigate the problems, and the best compromising alternative solution to be selected. However, few patterns exist for dealing with these kinds of knowledge of NFRs. In this paper, we present four kinds of NFR patterns for capturing and reusing knowledge of NFRs – objective pattern, problem pattern, alternatives pattern and selection pattern. NFR patterns may be visually represented, and organized by rules of specialization to create more specific patterns, of composition to build larger patterns, and of instantiation to create new patterns using existing patterns as templates. We have applied the NFR pattern approach to the TJX incident, one of the largest credit card theft in history, as a realistic case study. Sam Supakkul, Tom Hill, Lawrence Chung, Thein Than Tun, Julio César Sampaio do Prado Leite |
RE | 4 |
| 2009 | Are Your Lights Off? Using Problem Frames to Diagnose System FailuresabstractThis paper reports on our experience of investigating the role of software systems in the power blackout that affected parts of the United States and Canada on 14 August 2003. Based on a detailed study of the official report on the blackout, our investigation has aimed to bring out requirements engineering lessons that can inform development practices for dependable software systems. Since the causes of failures are typically rooted in the complex structures of software systems and their world contexts, we have deployed and evaluated a framework that looks beyond the scope of software and into its physical context, directing attention to places in the system structures where failures are likely to occur. We report that (i) Problem Frames were effective in diagnosing the causes of failures and documenting the causes in a schematic and accessible way, and (ii) errors in addressing the concerns of biddable domains, model building problems, and monitoring problems had contributed to the blackout. Thein Than Tun, Michael Jackson 0001, Robin C. Laney, Bashar Nuseibeh, Yijun Yu 0001 |
RE | 1 |
| 2009 | Early Identification of Problem Interactions: A Tool-Supported Approach
Thein Than Tun, Yijun Yu 0001, Robin C. Laney, Bashar Nuseibeh |
REFSQ | 1 |
| 2009 | Relating requirements and feature configurations: a systematic approach
Thein Than Tun, Quentin Boucher, Andreas Classen, Arnaud Hubaux, Patrick Heymans |
SPLC | 1 |
| 2009 | Specifying features of an evolving software systemabstractAbstract Software development is increasingly concerned with maintaining and extending existing software systems to meet the evolving user requirements. Many of these systems are feature‐rich and are developed incrementally. As structures of existing software systems—in addition to the user requirements—influence the specifications, specifying these systems poses unique challenges. This paper reports on our experience of applying an engineering approach to specifying an evolving feature‐rich television software system. In this approach, features are specified modularly by first fitting their problems to known problem patterns, and then analyzing typical concerns—meaning the potential causes of errors—associated with those patterns. In cases where the existing design poses difficulties when fitting problems to patterns, we transform its structure using known design mechanisms so that the problems fit the patterns. After deriving specifications of individual features, possible interactions between features are detected, before declaratively specifying resolutions to undesired interactions. As the concerns of features and their composition are addressed separately, the specifications derived are modular, thus, providing rich treaceability to their requirements. As well as discussing how features may be specified using natural language, we also show how their descriptions may be formalized using a form of temporal logic called the Event Calculus, and prove their correctness using an off‐the‐shelf tool. Copyright © 2009 John Wiley & Sons, Ltd. Thein Than Tun, Tim Trew, Michael Jackson 0001, Robin C. Laney, Bashar Nuseibeh |
Softw. Pract. Exp. | 1 |
| 2001 | A Comparison and Evaluation of Data Requirement Specification Techniques in SSADM and the Unified Process
Peter Bielkowicz, Thein Than Tun |
CAiSE | 2 |