Projects from Prof. Dr. Eric Bodden
ERC-Grant: Self-Optimizing Static Program Analysis
Software systems pervade our personal and professional lives, yet their insecurity threaten our society. To assure that software systems are dependable and secure, one must reason about their code. Static program analysis enables such reasoning. It can be applied to individual software components, and it can show not only the presence but also ...
Duration: 11/2024 - 10/2029
Funded by: EU
CRC 901 - Reliable and automated code-based analysis of Open-Source Dependencies (Reaktor) (Transfer project T5)
Summary of the subproject T5This transfer project builds on top of research from the collaborative research center 901 “On-The-Fly Computing”. In this transfer project, we explore how techniques from the quality assurance of services in on-the-fly service markets can be applied to the pressing problem of securely managing open-source dependencies ...
Duration: 10/2024 - 09/2026
Funded by: DFG
Specifiable automated detection of API misuse in CI pipelines
The correct use of APIs is crucial to avoid erroneous and insecure code. Cryptographic APIs are particularly important for data security, but general (all other) APIs must be used correctly to develop secure, high-quality software. To check the secure and correct use of APIs, static analysis tools are used in practice.The "Secure Software ...
Duration: 02/2023 - 08/2024
Funded by: BMBF
SAIL: SustAInable Life-cycle of Intelligent Socio-Technical Systems
Current systems that incorporate AI technology mainly target the introduction phase, where a core component is training and adaptation of AI models based on given example data. SAIL’s focus on the full life-cycle moves the current emphasis towards sustainable long-term development in real life. The joint project SAIL addresses both basic research ...
Duration: 08/2022 - 07/2026
Funded by: MKW NRW
CRC 901 - Automated risk analysis with respect to open-source dependencies (Hektor) (Transfer project T3)
This transfer project builds on top of research from the collaborative research center 901 “On-The-Fly Computing”. It researches how techniques from the quality assurance of services in On-The-Fly service markets can be applied to the pressing problem of securely managing open-source dependencies in large software development ecosystems. ...
Duration: 08/2021 - 09/2024
Funded by: DFG
AI Marketplace - The digital platform for tomorrow's innovations
Since the beginning of 2020, the research project AI Marketplace, headed by the Heinz Nixdorf Institute, has been working on a digital marketplace for artificial intelligence (AI) in product creation. The result is an innovation ecosystem that brings together users, providers and experts of AI to strengthen the innovative power of German ...
Duration: 01/2020 - 12/2022
Funded by: BMWK
Contact: Ruslan Bernijazov, Dr. Christian Koldewey, Leon Özcan
CodeShield – Sicherheitslücken entlang der Software-Supply-Chain aufdecken
CodeShield ist das erste Security-Werkzeug, das automatisiert neue und unbekannte Sicherheitslücken aufdecken kann – sowohl im projekteigenen Code als auch in Fremdcode (Bibliotheken). Es integriert sich dafür nahtlos in die gewohnte Entwicklungsumgebung von Softwareentwicklern. Das Projekt wird durch die Start-up Transfer NRW Förderung unterstützt ...
Duration: 11/2019 - 12/2020
Funded by: EU, EFRE.NRW
CROSSING - Cryptography-Based Security Solutions: Enabling Trust in New and Next Generation Computing Environments
As part of the DFG Collaborative Research Center 1119, CROSSING, we lead the Secure Integration of Cryptographic Software project. Together with Mira Mezini's Software Technology Group, we are exploring means to support developers in the secure integration of cryptographic libraries.
Duration: 07/2018 - 06/2026
Funded by: DFG
Zukunftssicherung des Soot Rahmenwerks für Programmanalyse und -transformation (FutureSoot)
Soot ist das wohl weltweit beliebteste Rahmenwerk zur Analyse und Transformation von Java- und Android-Programmen. Über seine mehr als fünfzehnjährige Lebensdauer hinweg sind unzählige wissenschaftliche Werkzeuge entstanden, die direkt auf Soot aufbauen. Das Soot Rahmenwerk bietet diesen Werkzeugen hiermit eine gemeinsame Implementierungsplattform, ...
Duration: 01/2018 - 12/2023
Funded by: DFG