On the use of github actions in software development repositories

A Decan, T Mens, PR Mazrae… - 2022 IEEE International …, 2022 - ieeexplore.ieee.org
GitHub Actions was introduced in 2019 and constitutes an integrated alternative to CI/CD
services for GitHub repositories. The deep integration with GitHub allows repositories to …

The GitHub development workflow automation ecosystems

M Wessel, T Mens, A Decan, PR Mazrae - Software Ecosystems: Tooling …, 2023 - Springer
Large-scale software development has become a highly collaborative and geographically
distributed endeavor, especially in open-source software development ecosystems and their …

An extended study of syntactic breaking changes in the wild

D Jayasuriya, S Ou, S Hegde, V Terragni… - Empirical Software …, 2025 - Springer
Libraries assist in accelerating the development of software applications by providing
reusable functionalities. Libraries and applications that declare these libraries as …

Aroma: Automatic reproduction of maven artifacts

M Keshani, TG Velican, G Bot, S Proksch - Proceedings of the ACM on …, 2024 - dl.acm.org
Modern software engineering establishes software supply chains and relies on tools and
libraries to improve productivity. However, reusing external software in a project presents a …

Dgmf: Fast generation of comparable, updatable dependency graphs for software repositories

T Litzenberger, J Düsing… - 2023 IEEE/ACM 20th …, 2023 - ieeexplore.ieee.org
Dependency graphs for software repositories have been utilized in a variety of different
research contexts. However, to this date there is no unified data model for such graphs, often …

VulNet: Towards improving vulnerability management in the Maven ecosystem

Z Ma, S Mondal, TH Chen, H Zhang… - Empirical Software …, 2024 - Springer
Developers rely on software ecosystems such as Maven to manage and reuse external
libraries (ie, dependencies). Due to the complexity of the used dependencies, developers …

Quality analysis of ios applications with focus on maintainability and security

K Rahkema, D Pfahl - 2022 IEEE International Conference on …, 2022 - ieeexplore.ieee.org
We use mobile apps on a daily basis and there is an app for everything. We trust these
applications with our most personal data. It is therefore important that these apps are as …

UPCY: Safely Updating Outdated Dependencies

A Dann, B Hermann, E Bodden - 2023 IEEE/ACM 45th …, 2023 - ieeexplore.ieee.org
Recent research has shown that developers hesitate to update dependencies and mistrust
automated approaches such as Dependabot, since they are afraid of introducing …

Exploiting Library Vulnerability via Migration Based Automating Test Generation

Z Chen, X Hu, X Xia, Y Gao, T Xu, D Lo… - Proceedings of the IEEE …, 2024 - dl.acm.org
In software development, developers extensively utilize third-party libraries to avoid
implementing existing functionalities. When a new third-party library vulnerability is …

Large Scale Study of Orphan Vulnerabilities in the Software Supply Chain

D Reid, K Rahkema, J Walden - … of the 19th International Conference on …, 2023 - dl.acm.org
The security of the software supply chain has become a critical issue in an era where the
majority of software projects use open source software dependencies, exposing them to …