Publications

Budde, C. E., Paramitha, R., & Massacci, F. (2024). Forecasting the risk of software choices: A model to foretell security vulnerabilities from library dependencies and source code evolution. arXiv preprint arXiv:2411.11202. Paper. Replication Package.
Budde, C. E., D’Argenio, P. R., & Hartmanns, A. (2024, October). Digging for decision trees: a case study in strategy sampling and learning. In International Conference on Bridging the Gap between AI and Reality (pp. 354-378). Cham: Springer Nature Switzerland. Paper. Replication Package.
Budde, C. E., Hartmanns, A., Meggendorfer, T., Weininger, M., & Wienhöft, P. (2025, May). Sound statistical model checking for probabilities and expected rewards. In International Conference on Tools and Algorithms for the Construction and Analysis of Systems (pp. 167-190). Cham: Springer Nature Switzerland. Paper. Replication Package.
Budde, C. E., D’Argenio, P. R., Fraire, J. A., Hartmanns, A., & Zhang, Z. (2024). Modest models and tools for real stochastic timed systems. In Principles of Verification: Cycling the Probabilistic Landscape: Essays Dedicated to Joost-Pieter Katoen on the Occasion of His 60th Birthday, Part II (pp. 115-142). Cham: Springer Nature Switzerland. Paper. Replication Package.
Corradini, D., Montolli, Z., Pasqua, M., & Ceccato, M. (2024, October). DeepREST: Automated test case generation for rest apis exploiting deep reinforcement learning. In Proceedings of the 39th IEEE/ACM International Conference on Automated Software Engineering (pp. 1383-1394). Paper. Replication Package.
Dengler, G., Carnevali, L., Budde, C. E., & Vicario, E. (2024, August). Transient evaluation of non-markovian models by stochastic state classes and simulation. In International Conference on Quantitative Evaluation of Systems and Formal Modeling and Analysis of Timed Systems (pp. 213-232). Cham: Springer Nature Switzerland. Paper. Replication Package.
Iuliano, G., Allocca, L., Cicalese, M., & Di Nucci, D. (2025, June). Automated vulnerability injection in solidity smart contracts: A mutation-based approach for benchmark development. In Proceedings of the 29th International Conference on Evaluation and Assessment in Software Engineering (pp. 91-101). Paper. Replication Package.
Iuliano, G., Corradini, D., Pasqua, M., Ceccato, M., & Di Nucci, D. (2025). How Do Solidity Versions Affect Vulnerability Detection Tools? An Empirical Study. arXiv preprint arXiv:2504.05515. Registered Report. Replication Package.
Iuliano, G., Cicalese, M., & Di Nucci, D. (2025). Benchmarking Vulnerability Detectors for Smart Contracts, QualITA. Paper. Replication Package.
Iuliano, G., & Di Nucci, D. (2026). Smart contract vulnerabilities, tools, and benchmarks: An updated systematic literature review. Journal of Systems and Software, 112788. Paper. Replication Package.
Iuliano, G., Carangelo, D., Calabrese, C., & Di Nucci, D. (2026). MuSe: a Mutation Testing Plugin for the Remix IDE. IEEE 33rd International Conference on Software Analysis, Evolution, and Reengineering. Paper. Replication Package.
Iuliano, G., Corradini, D., Pasqua, M., Cicalese, M., Ceccato, M., & Di Nucci, D. (2026). How Do Solidity Versions Affect Vulnerability Detection Tools? An Empirical Study. Under review at Empirical Software Engineering Journal. Replication Package.
Nicoletti, S. M., Lopuhaä-Zwakenberg, M., Stoelinga, M., Massacci, F., & Budde, C. E. (2024). How hard can it be? Quantifying MITRE attack campaigns with attack trees and cATM logic. ACM Transactions on Software Engineering and Methodology. Paper. Replication Package.
Oss, T., & Budde, C. E. (2024). Vulnerability anti-patterns in Solidity: Increasing smart contracts security by reducing false alarms. arXiv preprint arXiv:2410.17204. Paper. Replication Package.
Oss, T., & Budde, C. E. Security verification tools for Ethereum smart contracts: a reusability bonfire story. In Proceedings of the Fourth Workshop on Reproducibility and Replication of Research Results. Paper. Replication Package.
Pasqua, M., Ceccato, M., & Tonella, P. (2024, April). Hypertesting of programs: Theoretical foundation and automated test generation. In Proceedings of the IEEE/ACM 46th International Conference on Software Engineering (pp. 1-12). Paper. Replication Package.
Pasqua, M., Mari, S., Santoro, F., & Ceccato, M. (2025). An Ontology of Defects for Ethereum and its Smart Contracts. Blockchain: Research and Applications, 100418. Paper. Replication Package.