论文标题

开发人员的隐私教育:刺激安全编码行为的游戏框架

Developers' Privacy Education: A game framework to stimulate secure coding behaviour

论文作者

Alhazmi, Abdulrahman Hassan, Hameed, Mumtaz Abdul, Arachchilage, Nalin Asanka Gamagedara

论文摘要

软件隐私提供了将数据访问限制在未经授权的各方的能力。通过不同的方式,例如将GDPR实现到软件应用程序中。但是,先前的研究表明,缺乏编码行为不足会导致隐私漏洞,例如泄露个人数据。因此,本研究提出了一个新颖的游戏框架作为培训干预措施,使开发人员能够实施保护隐私的软件系统。通过调查研究(带有一些退出问题)对拟议的框架进行了经验研究,该研究揭示了游戏设计框架中应解决的要素。开发的游戏框架增强了开发人员的安全编码行为,以提高其开发软件的隐私。

Software privacy provides the ability to limit data access to unauthorized parties. Privacy is achieved through different means, such as implementing GDPR into software applications. However, previous research revealed that the lack of poor coding behaviour leads to privacy breaches such as personal data breaching. Therefore, this research proposes a novel game framework as a training intervention enabling developers to implement privacy-preserving software systems. The proposed framework was empirically investigated through a survey study (with some exit questions), which revealed the elements that should be addressed in the game design framework. The developed game framework enhances developers' secure coding behaviour to improve the privacy of the software they develop.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源