{"id":"https://openalex.org/W1989657183","doi":"https://doi.org/10.1109/ms.2008.130","title":"Using Static Analysis to Find Bugs","display_name":"Using Static Analysis to Find Bugs","publication_year":2008,"publication_date":"2008-08-20","ids":{"openalex":"https://openalex.org/W1989657183","doi":"https://doi.org/10.1109/ms.2008.130","mag":"1989657183"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/ms.2008.130","pdf_url":null,"source":{"id":"https://openalex.org/S6725529","display_name":"IEEE Software","issn_l":"0740-7459","issn":["0740-7459","1937-4194"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"journal-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"http://www.cs.umd.edu/%7Eayewah/web/pubs/UsingFindBugs08.pdf","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5038961629","display_name":"Nathaniel Ayewah","orcid":null},"institutions":[{"id":"https://openalex.org/I66946132","display_name":"University of Maryland, College Park","ror":"https://ror.org/047s2c258","country_code":"US","type":"education","lineage":["https://openalex.org/I66946132"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nathaniel Ayewah","raw_affiliation_strings":["University of Maryland College Park MD"],"affiliations":[{"raw_affiliation_string":"University of Maryland College Park MD","institution_ids":["https://openalex.org/I66946132"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5026960776","display_name":"William Pugh","orcid":null},"institutions":[{"id":"https://openalex.org/I66946132","display_name":"University of Maryland, College Park","ror":"https://ror.org/047s2c258","country_code":"US","type":"education","lineage":["https://openalex.org/I66946132"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"William Pugh","raw_affiliation_strings":["University of Maryland, College Park"],"affiliations":[{"raw_affiliation_string":"University of Maryland, College Park","institution_ids":["https://openalex.org/I66946132"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5021478487","display_name":"David Hovemeyer","orcid":"https://orcid.org/0000-0001-5682-754X"},"institutions":[{"id":"https://openalex.org/I37693276","display_name":"York College of Pennsylvania","ror":"https://ror.org/02ssn3c97","country_code":"US","type":"education","lineage":["https://openalex.org/I37693276"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"David Hovemeyer","raw_affiliation_strings":["[York College of Pennsylvania]"],"affiliations":[{"raw_affiliation_string":"[York College of Pennsylvania]","institution_ids":["https://openalex.org/I37693276"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5081340873","display_name":"J. David Morgenthaler","orcid":"https://orcid.org/0000-0001-9225-4435"},"institutions":[{"id":"https://openalex.org/I1291425158","display_name":"Google (United States)","ror":"https://ror.org/00njsd438","country_code":"US","type":"company","lineage":["https://openalex.org/I1291425158","https://openalex.org/I4210128969"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"J. David Morgenthaler","raw_affiliation_strings":["Google\u2020#TAB#"],"affiliations":[{"raw_affiliation_string":"Google\u2020#TAB#","institution_ids":["https://openalex.org/I1291425158"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5005487588","display_name":"John Penix","orcid":null},"institutions":[{"id":"https://openalex.org/I1291425158","display_name":"Google (United States)","ror":"https://ror.org/00njsd438","country_code":"US","type":"company","lineage":["https://openalex.org/I1291425158","https://openalex.org/I4210128969"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"John Penix","raw_affiliation_strings":["Google\u2020#TAB#"],"affiliations":[{"raw_affiliation_string":"Google\u2020#TAB#","institution_ids":["https://openalex.org/I1291425158"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":62.64,"has_fulltext":true,"fulltext_origin":"ngrams","cited_by_count":481,"citation_normalized_percentile":{"value":0.999966,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":99,"max":100},"biblio":{"volume":"25","issue":"5","first_page":"22","last_page":"29"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9993,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9993,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10126","display_name":"Logic, programming, and type systems","score":0.9957,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9954,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/sql-injection","display_name":"SQL Injection","score":0.64566267},{"id":"https://openalex.org/keywords/software-bug","display_name":"Software bug","score":0.5667959},{"id":"https://openalex.org/keywords/code-review","display_name":"Code review","score":0.46726435},{"id":"https://openalex.org/keywords/null","display_name":"Null (SQL)","score":0.41794646},{"id":"https://openalex.org/keywords/software-testing","display_name":"Software testing","score":0.41272178}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.80186325},{"id":"https://openalex.org/C97686452","wikidata":"https://www.wikidata.org/wiki/Q7604153","display_name":"Static analysis","level":2,"score":0.79729646},{"id":"https://openalex.org/C137287247","wikidata":"https://www.wikidata.org/wiki/Q1329550","display_name":"Static program analysis","level":4,"score":0.6791392},{"id":"https://openalex.org/C548217200","wikidata":"https://www.wikidata.org/wiki/Q251","display_name":"Java","level":2,"score":0.6576114},{"id":"https://openalex.org/C150451098","wikidata":"https://www.wikidata.org/wiki/Q506059","display_name":"SQL injection","level":5,"score":0.64566267},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.6111132},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.5860327},{"id":"https://openalex.org/C1009929","wikidata":"https://www.wikidata.org/wiki/Q179550","display_name":"Software bug","level":3,"score":0.5667959},{"id":"https://openalex.org/C150202949","wikidata":"https://www.wikidata.org/wiki/Q107602","display_name":"Pointer (user interface)","level":2,"score":0.5493592},{"id":"https://openalex.org/C150292731","wikidata":"https://www.wikidata.org/wiki/Q1342704","display_name":"Code review","level":5,"score":0.46726435},{"id":"https://openalex.org/C43126263","wikidata":"https://www.wikidata.org/wiki/Q128751","display_name":"Source code","level":2,"score":0.4453286},{"id":"https://openalex.org/C199519371","wikidata":"https://www.wikidata.org/wiki/Q942695","display_name":"Source lines of code","level":3,"score":0.43326548},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.43216217},{"id":"https://openalex.org/C2779639559","wikidata":"https://www.wikidata.org/wiki/Q7661178","display_name":"Symbolic execution","level":3,"score":0.42182672},{"id":"https://openalex.org/C203763787","wikidata":"https://www.wikidata.org/wiki/Q371029","display_name":"Null (SQL)","level":2,"score":0.41794646},{"id":"https://openalex.org/C2984328558","wikidata":"https://www.wikidata.org/wiki/Q188522","display_name":"Software testing","level":3,"score":0.41272178},{"id":"https://openalex.org/C529173508","wikidata":"https://www.wikidata.org/wiki/Q638608","display_name":"Software development","level":3,"score":0.3720891},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.30321193},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.122926295},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.11621955},{"id":"https://openalex.org/C194222762","wikidata":"https://www.wikidata.org/wiki/Q114486","display_name":"Query by Example","level":4,"score":0.097251594},{"id":"https://openalex.org/C164120249","wikidata":"https://www.wikidata.org/wiki/Q995982","display_name":"Web search query","level":3,"score":0.0},{"id":"https://openalex.org/C97854310","wikidata":"https://www.wikidata.org/wiki/Q19541","display_name":"Search engine","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/ms.2008.130","pdf_url":null,"source":{"id":"https://openalex.org/S6725529","display_name":"IEEE Software","issn_l":"0740-7459","issn":["0740-7459","1937-4194"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},{"is_oa":true,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.187.8985","pdf_url":"http://www.cs.umd.edu/%7Eayewah/web/pubs/UsingFindBugs08.pdf","source":{"id":"https://openalex.org/S4306400349","display_name":"CiteSeer X (The Pennsylvania State University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I130769515","host_organization_name":"Pennsylvania State University","host_organization_lineage":["https://openalex.org/I130769515"],"host_organization_lineage_names":["Pennsylvania State University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.187.8985","pdf_url":"http://www.cs.umd.edu/%7Eayewah/web/pubs/UsingFindBugs08.pdf","source":{"id":"https://openalex.org/S4306400349","display_name":"CiteSeer X (The Pennsylvania State University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I130769515","host_organization_name":"Pennsylvania State University","host_organization_lineage":["https://openalex.org/I130769515"],"host_organization_lineage_names":["Pennsylvania State University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/9","display_name":"Industry, innovation and infrastructure","score":0.54}],"grants":[],"datasets":[],"versions":[],"referenced_works_count":11,"referenced_works":["https://openalex.org/W1486481742","https://openalex.org/W1568658445","https://openalex.org/W1981981414","https://openalex.org/W2053465247","https://openalex.org/W2082515446","https://openalex.org/W2084974764","https://openalex.org/W2093094052","https://openalex.org/W2108827856","https://openalex.org/W2119682413","https://openalex.org/W2125343911","https://openalex.org/W4247981256"],"related_works":["https://openalex.org/W4312706861","https://openalex.org/W4213243744","https://openalex.org/W3153702491","https://openalex.org/W3014398013","https://openalex.org/W3008981372","https://openalex.org/W2986478207","https://openalex.org/W2969257295","https://openalex.org/W2206096527","https://openalex.org/W2184634743","https://openalex.org/W2034209539"],"abstract_inverted_index":{"Static":[0],"analysis":[1],"examines":[2],"code":[3],"in":[4,59,82],"the":[5,13],"absence":[6],"of":[7,44,89],"input":[8],"data":[9],"and":[10,29,49,78,99],"without":[11],"running":[12],"code.":[14],"It":[15],"can":[16,91],"detect":[17],"potential":[18],"security":[19],"violations":[20],"(SQL":[21],"injection),":[22],"runtime":[23],"errors":[24],"(dereferencing":[25],"a":[26,41],"null":[27],"pointer)":[28],"logical":[30],"inconsistencies":[31],"(a":[32],"conditional":[33],"test":[34],"that":[35],"can't":[36],"possibly":[37],"be":[38,92],"true).":[39],"Although":[40],"rich":[42],"body":[43],"literature":[45],"exists":[46],"on":[47],"algorithms":[48],"analytical":[50],"frameworks":[51],"used":[52],"by":[53],"such":[54,106],"tools,":[55],"reports":[56],"describing":[57],"experiences":[58,79],"industry":[60],"are":[61],"much":[62],"harder":[63],"to":[64,104],"come":[65],"by.":[66],"The":[67],"authors":[68],"describe":[69],"FindBugs,":[70],"an":[71],"open":[72],"source":[73],"static-analysis":[74],"tool":[75],"for":[76],"Java,":[77],"using":[80],"it":[81],"production":[83],"settings.":[84],"FindBugs":[85],"evaluates":[86],"what":[87],"kinds":[88],"defects":[90],"effectively":[93],"detected":[94],"with":[95],"relatively":[96],"simple":[97],"techniques":[98],"helps":[100],"developers":[101],"understand":[102],"how":[103],"incorporate":[105],"tools":[107],"into":[108],"software":[109],"development.":[110]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W1989657183","counts_by_year":[{"year":2024,"cited_by_count":19},{"year":2023,"cited_by_count":29},{"year":2022,"cited_by_count":42},{"year":2021,"cited_by_count":41},{"year":2020,"cited_by_count":36},{"year":2019,"cited_by_count":38},{"year":2018,"cited_by_count":42},{"year":2017,"cited_by_count":29},{"year":2016,"cited_by_count":31},{"year":2015,"cited_by_count":30},{"year":2014,"cited_by_count":18},{"year":2013,"cited_by_count":29},{"year":2012,"cited_by_count":33}],"updated_date":"2025-01-15T21:18:40.744805","created_date":"2016-06-24"}