16 papers · ranked by Valyu relevance
Kajetan Kuszczyński, Michał Walkowski, Alessandra Rizzardi
The increasing complexity of web applications and systems, driven by ongoing digitalization, has made software security testing a necessary and critical activity in the software development lifecycle. This article compares the performance of open-source tools for conducting static code analysis for security purposes.…
Chen Tsfaty, Michael Fire
Title: Summary Modern software development often relies on open-source code sharing. Open-source code reuse, however, allows hackers to access wide developer communities, thereby potentially affecting many products. An increasing number of such “supply chain attacks” have occurred in recent years, taking advantage of…
Melih Peker, Ozcan Ozturk
Selecting a good set of optimization flags requires extensive effort and expert input. While most of the prior research considers using static, spatial, or dynamic features, some of the latest research directly applied deep neural networks to source code. We combined the static features, spatial features, and deep…
Dhivyabharathi Ramasamy, Cristina Sarasua, Alberto Bacchelli, Abraham Bernstein
'Abraham Bernstein'] Despite the ubiquity of data science, we are far from rigorously understanding how coding in data science is performed. Even though the scientific literature has hinted at the iterative and explorative nature of data science coding, we need further empirical evidence to understand this practice and…
Aakanshi Gupta, Bharti Suri, Deepanshu Sharma, Sanjay Misra + 1 more
'Luis Fernandez-Sanz'] In the digitization era, the battery consumption factor plays a vital role for the devices that operate Android software, expecting them to deliver high performance and good maintainability.The study aims to analyze the Android-specific code smells, their impact on battery consumption, and the…
Katarzyna Filus, Paweł Boryszko, Joanna Domańska, Miltiadis Siavvas + 2 more
'Erol Gelenbe' 'Xabier Larrucea'] Common software vulnerabilities can result in severe security breaches, financial losses, and reputation deterioration and require research effort to improve software security. The acceleration of the software production cycle, limited testing resources, and the lack of security…
Maxim Kalinin, Nikita Gribkov, Joaquin Ordieres Meré
This paper addresses the problem of IoT security caused by code cloning when developing a massive variety of different smart devices. A clone detection method is proposed to identify clone-caused vulnerabilities in IoT software. A hybrid solution combines syntactic and semantic analyses of the code. Based on the…
Gao Hao, Haytham Hijazi, João Durães, Júlio Medeiros + 7 more
'Ricardo Couceiro' 'Chan Tong Lam' 'César Teixeira' 'João Castelhano' 'Miguel Castelo Branco' 'Paulo Carvalho' 'Henrique Madeira'] Complexity is the key element of software quality. This article investigates the problem of measuring code complexity and discusses the results of a controlled experiment to compare…
Yong Fang, Shengjun Han, Cheng Huang, Runpu Wu + 1 more
With the widespread usage of Web applications, the security issues of source code are increasing. The exposed vulnerabilities seriously endanger the interests of service providers and customers. There are some models for solving this problem. However, most of them rely on complex graphs generated from source code or…
Fabiano Pecorelli, Savanna Lujan, Valentina Lenarduzzi, Fabio Palomba + 1 more
Code smells are poor implementation choices that developers apply while evolving source code and that affect program maintainability. Multiple automated code smell detectors have been proposed: while most of them relied on heuristics applied over software metrics, a recent trend concerns the definition of machine…
Rana Sandouka, Hamoud Aljamaan, Stephen Piccolo
Code smells are poor code design or implementation that affect the code maintenance process and reduce the software quality. Therefore, code smell detection is important in software building. Recent studies utilized machine learning algorithms for code smell detection. However, most of these studies focused on code…
Luca Ardito, Luca Barbato, Riccardo Coppola, Michele Valsesia + 1 more
'Antonia Lopes'] Rust is an innovative programming language initially implemented by Mozilla, developed to ensure high performance, reliability, and productivity. The final purpose of this study consists of applying a set of common static software metrics to programs written in Rust to assess the verbosity…
Aurora Papotti, Katja Tuma, Fabio Massacci
Slicing is a fault localization technique that has been proposed to support debugging and program comprehension. Yet, its empirical effectiveness during code inspection by humans has received limited attention. The goal of our study is two-fold. First, we aim to define what it means for a code reviewer to identify the…
Rashmi Yadav, Ravindra Patel, Abhay Kothari
Introduction The comprehension of legacy codes is difficult to understand. Various commercial reengineering tools are available that have unique working styles, and are equipped with their inherent capabilities and shortcomings. The focus of the available tools is in visualizing static behavior not the dynamic one.…
Mahmoud Alfadel, Khalid Aljasser, Mohammad Alshayeb, Jacopo Soldani
Software systems are often developed in such a way that good practices in the object-oriented paradigm are not met, causing the occurrence of specific disharmonies which are sometimes called code smells. Design patterns catalogue best practices for developing object-oriented software systems. Although code smells and…
Roberto Tonelli, Giuseppe Antonio Pierro, Marco Ortu, Giuseppe Destefanis + 1 more
'Giuseppe Destefanis' 'Sathishkumar V E'] Smart contracts (SC) are software programs that reside and run over a blockchain. The code can be written in different languages with the common purpose of implementing various kinds of transactions onto the hosting blockchain. They are ruled by the blockchain infrastructure…