电子表格故障剖析:分析EuSpRIG恐怖故事语料库
Anatomy of a Spreadsheet Failure, Analysing the EuSpRIG Horror Story Corpus
浏览论文内容
中文总结 AI 辅助
本研究分析EuSpRIG恐怖故事语料库中121起电子表格故障,揭示公式错误、数据输入失误及隐藏数据等模式,指出电子表格风险已扩展至可见性、治理与信任问题,且错误持续三十年,权威性变化加剧危害。
中文摘要 AI 辅助
电子表格灾难已被记录三十余年,但并未消失。本文考察EuSpRIG恐怖故事档案,以此作为普通电子表格如何失效及其后果的证据。经过清理和去重后,1995年至2026年的121起事件被分类为十二个故障类别,并按机制、情境和后果进行分析。公式错误、数据输入失误和数据处理差错共占71例,且在整个期间反复出现,从1995年Fidelity的缺失负号到2024年因日期输入错误导致挪威主权财富基金损失约9200万美元。第二种模式涉及工作簿中存在但接收者不可见的信息:隐藏行、隐藏工作表、数据透视表缓存、嵌入对象和保留的源图层,即使计算无误也可能造成损害。报告案例增长最明显的是隐藏或嵌入数据类别,其最严重的例子是2022年国防部的电子表格,通过隐藏行暴露了约18,700名阿富汗申请者的详细信息。本文认为,电子表格风险不再仅仅是数字错误的问题。它还涉及可见性、披露、治理和信任。现有的分类法对于公式、输入和处理错误仍然有用,但未能完全捕捉电子表格作为不受控制的操作基础设施所造成的公共危害。同样的错误已持续三十年,改变的是组织赋予包含这些错误的电子表格的权威。
英文摘要
Spreadsheet disasters have been documented for more than thirty years, but they have not gone away. This paper examines the EuSpRIG horror stories archive as evidence of how ordinary spreadsheets fail and the consequences that follow. After cleaning and deduplication, 121 incidents from 1995 to 2026 were classified into twelve failure categories and analysed by mechanism, context and consequence. Formula errors, data-entry slips and data-handling mistakes account for 71 cases and recur across the whole period, from Fidelity's missing minus sign in 1995 to a mistyped date that cost Norway's sovereign wealth fund about $92 million in 2024. A second pattern concerns information present in a workbook but not visible to the recipient: hidden rows, hidden sheets, pivot-table caches, embedded objects and retained source layers can cause harm even when no calculation is wrong. The clearest rise in reported cases is in this hidden or embedded data category, whose most serious example is the 2022 Ministry of Defence spreadsheet that exposed details of roughly 18,700 Afghan applicants through hidden rows. The paper argues that spreadsheet risk is no longer only a problem of wrong numbers. It also involves visibility, disclosure, governance and trust. Existing taxonomies remain useful for formula, entry and handling errors, but do not fully capture the public harm caused by spreadsheets used as uncontrolled operational infrastructure. The same mistakes have persisted for three decades, what has changed is the authority organisations give to the spreadsheets that contain them.
发表机构
- Cardiff Metropolitan University(卡迪夫城市大学)
- Dow Scholfield Watts (DSW)(道·斯科菲尔德·瓦茨)
机构由 AI 辅助整理,请以论文原文为准。