-
King, J., Smith, B, and Williams, L.,Modifying Without a Trace: General Audit Guidelines are Inadequate for Electronic Health Record Audit Mechanisms, 2nd ACM SIGHIT International Health Informatics Symposium (IHI) 2012, Miami, FL, USA, to appear.
-
Shin, Y. and Williams, L., An Initial Study on the Use of Execution Complexity Metrics as Indicators of Software Vulnerabilities, 7th International Workshop on Software Engineering for Secure Systems 2011 at the International Conference on Software Engineering, Honolulu, USA, electronic proceedings.
-
Helms, E. and Williams, L., Evaluating Access Control of Open Source Health Record Systems, 3rd Workshop on Software Engineering in Healthcare (SEHC) at the International Conference on Software Engineering, Honolulu, USA, electronic proceedings.
-
Austin, A. and Williams, L., One Technique is Not Enough: An Empirical Comparison of Vulnerability Discovery Techniques, International Symposium on Empirical Software Engineering and Measurement (ESEM) 2011, Banff, Canada, to appear.
-
-
Shin, Y., Meneely, A., Williams, L., Osbourne, J., Evaluating Complexity, Code Churn, and Developer Activity Metrics as Indicators of Software Vulnerabilities, IEEE Transactions in Software Engineering, to appear, 2011.
-
B. Smith, A. Austin, M. Brown, J. King, J. Lankford, A. Meneely, L. Williams,
Challenges for Protecting the Privacy of Health Information: Required Certification Can Leave Common Vulnerabilities Undetected, Security and Privacy in Medical and
Home-care Systems (SPIMACS 2010) Workshop of ACM Computers and Communication Security 2010, Chicago, IL, pp. 1-12, 2010.
-
Williams, L., Meneely, A., and Shipley, G.,
Protection Poker: The New Software Security "Game", IEEE Security and Privacy, Vol. 8, Number 3, May/June 2010, pp. 14-20.
-
-
Zimmermann, T., Nagappan, N. and Williams, L., ,
Searching for a Needle in a Haystack: Predicting Security Vulnerabilities for Windows Vista, International Conference on Software Testing, Verification, and Validation (ICST) 2010, Paris, France, pp.421-428.
-
B. Smith, L. Williams, A. Austin,
"Idea: Using System Level Testing for Revealing SQL Injection-Related Error Message Information Leaks", Lecture Notes in Computer Science, vol. 5965, Engineering Secure Software and Systems (ESSoS 2010), Pisa, Italy, pp. 192-200, 2010.
- Austin, A., Smith, B., and Williams, L., Towards Improved Security Criteria for Certification of Electronic Health Record Systems, 2nd Workshop on Software Engineering in Healthcare at the International Conference on Software Engineering (ICSE) 2010, Cape Town, South Africa, electronic proceedings.
-
-
Schmidt, J. Y., Antón, A., Williams, L., and Otto, P., The Role of Data Use Agreements in Specifying Legally Compliant Software Requirements, Fourth Workshop on Requirements Engineering and Law at Requirements Engineering (RE) 2011, Trento, Italy, to appear.
-
Meneely, A, Smith, B. and Williams, L., Validating Software Metrics: A Spectrum of Philosophies, ACM Transactions on Software Engineering, to appear.
-
Meneely, A, Rotella, P. and Williams, L., Does Adding Manpower Also Affect Quality? An Empirical Longitudinal Analysis, ACM Foundations of Software Engineering (FSE) 2011, to appear.
-
Meneely, A, Smith, B. and Williams, L., "iTrust", in Software and Systems Traceability, Springer, in press.
-
-
Heckman, S. and Williams, L.,
Systematic Literature Review of Actionable Alert Identification Techniques for Automated Static Code Analysis, Information and Software Technology, Vol. 53, No. 4, April 2011.
-
-