A systematic literature review of actionable alert identification techniques for automated static code analysis

S Heckman, L Williams - Information and Software Technology, 2011 - Elsevier
CONTEXT: Automated static analysis (ASA) identifies potential source code anomalies early
in the software development lifecycle that could lead to field failures. Excessive alert …

Analyzing the state of static analysis: A large-scale evaluation in open source software

M Beller, R Bholanath, S McIntosh… - 2016 IEEE 23rd …, 2016 - ieeexplore.ieee.org
The use of automatic static analysis has been a software engineering best practice for
decades. However, we still do not know a lot about its use in real-world software projects …

Reducing test effort: A systematic map** study on existing approaches

F Elberzhager, A Rosbach, J Münch… - Information and Software …, 2012 - Elsevier
CONTEXT: Quality assurance effort, especially testing effort, is often a major cost factor
during software development, which sometimes consumes more than 50% of the overall …

Software product quality control

S Wagner - 2013 - Springer
This book has been a much longer process than I would have ever anticipated. The original
idea was to integrate and combine the research on software product quality control with my …

On establishing a benchmark for evaluating static analysis alert prioritization and classification techniques

S Heckman, L Williams - Proceedings of the Second ACM-IEEE …, 2008 - dl.acm.org
Benchmarks provide an experimental basis for evaluating software engineering processes
or techniques in an objective and repeatable manner. We present the FAULTBENCH v0. 1 …

Evolutionary repair of faulty software

A Arcuri - Applied soft computing, 2011 - Elsevier
Testing and fault localization are very expensive software engineering tasks that have been
tried to be automated. Although many successful techniques have been designed, the actual …

A gamified tool for motivating developers to remove warnings of bug pattern tools

S Arai, K Sakamoto, H Washizaki… - 2014 6th international …, 2014 - ieeexplore.ieee.org
Static analysis tools such as bug pattern tools are useful to detect bugs early in software
development. However, existing tools sometimes yield so many warnings that developers …

Evaluating c/c++ vulnerability detectability of query-based static application security testing tools

Z Li, Z Liu, WK Wong, P Ma… - IEEE Transactions on …, 2024 - ieeexplore.ieee.org
In recent years, query-based static application security testing (Q-SAST) tools such as
CodeQL have gained popularity due to their ability to codify vulnerability knowledge into …

Tool support for continuous quality control

F Deissenboeck, E Juergens, B Hummel… - IEEE …, 2008 - ieeexplore.ieee.org
Over time, software systems suffer gradual quality decay and therefore costs can rise if
organizations fail to take proactive countermeasures. Quality control is the first step to …

Predicting software defects with causality tests

C Couto, P Pires, MT Valente, RS Bigonha… - Journal of Systems and …, 2014 - Elsevier
In this paper, we propose a defect prediction approach centered on more robust evidences
towards causality between source code metrics (as predictors) and the occurrence of …