CVEfixes: automated collection of vulnerabilities and their fixes from open-source software

G Bhandari, A Naseer, L Moonen - Proceedings of the 17th International …, 2021 - dl.acm.org
Data-driven research on the automated discovery and repair of security vulnerabilities in
source code requires comprehensive datasets of real-life vulnerable code and their fixes. To …

Automated identification and qualitative characterization of safety concerns reported in uav software platforms

A Di Sorbo, F Zampetti, A Visaggio, M Di Penta… - ACM Transactions on …, 2023 - dl.acm.org
Unmanned Aerial Vehicles (UAVs) are nowadays used in a variety of applications. Given the
cyber-physical nature of UAVs, software defects in these systems can cause issues with …

CI/CD pipelines evolution and restructuring: A qualitative and quantitative study

F Zampetti, S Geremia, G Bavota… - 2021 IEEE International …, 2021 - ieeexplore.ieee.org
Continuous Integration and Delivery (CI/CD) pipelines entail the build process automation
on dedicated machines, and have been demonstrated to produce several advantages …

An empirical characterization of software bugs in open-source cyber–physical systems

F Zampetti, R Kapur, M Di Penta… - Journal of Systems and …, 2022 - Elsevier
Abstract Background: Cyber-Physical Systems (CPSs) are systems in which software and
hardware components interact with each other. Understanding the specific nature and root …

Climate coach: A dashboard for open-source maintainers to overview community dynamics

HS Qiu, A Lieb, J Chou, M Carneal, J Mok… - Proceedings of the …, 2023 - dl.acm.org
Open-source software projects have become an integral part of our daily life, supporting
virtually every software we use today. Since open-source software forms the digital …

GrimoireLab: A toolset for software development analytics

S Dueñas, V Cosentino, JM Gonzalez-Barahona… - PeerJ Computer …, 2021 - peerj.com
Background After many years of research on software repositories, the knowledge for
building mature, reusable tools that perform data retrieval, storage and basic analytics is …

[HTML][HTML] CodeCity: A comparison of on-screen and virtual reality

D Moreno-Lumbreras, R Minelli, A Villaverde… - Information and …, 2023 - Elsevier
Context: Over the past decades, researchers proposed numerous approaches to visualize
source code. A popular one is CodeCity, an interactive 3D software visualization …

Continuously assessing and improving software quality with software analytics tools: a case study

S Martínez-Fernández, AM Vollmer, A Jedlitschka… - IEEE …, 2019 - ieeexplore.ieee.org
In the last decade, modern data analytics technologies have enabled the creation of
software analytics tools offering real-time visualization of various aspects related to software …

Rstrace+: Reviewer suggestion using software artifact traceability graphs

E Sülün, E Tüzün, U Doğrusöz - Information and Software Technology, 2021 - Elsevier
Context: Various types of artifacts (requirements, source code, test cases, documents, etc.)
are produced throughout the lifecycle of a software. These artifacts are connected with each …

Towards a taxonomy of code review smells

E Doğan, E Tüzün - Information and Software Technology, 2022 - Elsevier
Context: Code review is a crucial step of the software development life cycle in order to
detect possible problems in source code before merging the changeset to the codebase …