Ben Hermann
Secure Software Engineering / Heinz Nixdorf Institut
Fakultät für Elektrotechnik, Informatik und Mathematik
Heinz Nixdorf Institut
Heinz Nixdorf Institut - Informatik
IT-Sicherheit (bis 2019)
ben.hermann@uni-paderborn.deID
23 Publications
2023 | Conference Paper | LibreCat-ID: 35083
@article{Dann_Hermann_Bodden_2023, series={International Conference on Software Engineering (ICSE)}, title={UpCy: Safely Updating Outdated Dependencies}, author={Dann, Andreas Peter and Hermann, Ben and Bodden, Eric}, year={2023}, collection={International Conference on Software Engineering (ICSE)} }
LibreCat
2022 | Journal Article | LibreCat-ID: 30511 |

@article{Schubert_Gazzillo_Patterson_Braha_Schiebel_Hermann_Wei_Bodden_2022, title={Static data-flow analysis for software product lines in C}, volume={29}, DOI={10.1007/s10515-022-00333-1}, number={135}, journal={Automated Software Engineering}, publisher={Springer Science and Business Media LLC}, author={Schubert, Philipp and Gazzillo, Paul and Patterson, Zach and Braha, Julian and Schiebel, Fabian and Hermann, Ben and Wei, Shiyi and Bodden, Eric}, year={2022} }
LibreCat
| DOI
| Download (ext.)
2021 | Journal Article | LibreCat-ID: 27045 |

@article{Luo_Pauck_Piskachev_Benz_Pashchenko_Mory_Bodden_Hermann_Massacci_2021, title={TaintBench: Automatic real-world malware benchmarking of Android taint analyses}, DOI={10.1007/s10664-021-10013-5}, journal={Empirical Software Engineering}, author={Luo, Linghui and Pauck, Felix and Piskachev, Goran and Benz, Manuel and Pashchenko, Ivan and Mory, Martin and Bodden, Eric and Hermann, Ben and Massacci, Fabio}, year={2021} }
LibreCat
| DOI
| Download (ext.)
2021 | Conference Paper | LibreCat-ID: 21598 |

@inproceedings{Schubert_Hermann_Bodden_2021, title={Lossless, Persisted Summarization of Static Callgraph, Points-To and Data-Flow Analysis}, booktitle={European Conference on Object-Oriented Programming (ECOOP)}, author={Schubert, Philipp and Hermann, Ben and Bodden, Eric}, year={2021} }
LibreCat
| Download (ext.)
2021 | Conference Paper | LibreCat-ID: 26406
@inproceedings{Schubert_Hermann_Bodden_Leer_2021, title={Into the Woods: Experiences from Building a Dataflow Analysis Framework for C/C++}, booktitle={SCAM ’21: IEEE International Working Conference on Source Code Analysis and Manipulation (Engineering Track)}, author={Schubert, Philipp and Hermann, Ben and Bodden, Eric and Leer, Richard}, year={2021} }
LibreCat
2021 | Conference Paper | LibreCat-ID: 26405
@inproceedings{Schubert_Sattler_Schiebel_Hermann_Bodden_2021, title={Modeling the Effects of Global Variables in Data-Flow Analysis for C/C++}, booktitle={2021 IEEE 21st International Working Conference on Source Code Analysis and Manipulation (SCAM)}, author={Schubert, Philipp and Sattler, Florian and Schiebel, Fabian and Hermann, Ben and Bodden, Eric}, year={2021} }
LibreCat
2021 | Journal Article | LibreCat-ID: 31132
@article{Dann_Plate_Hermann_Ponta_Bodden_2021, title={Identifying Challenges for OSS Vulnerability Scanners - A Study & Test Suite}, DOI={10.1109/tse.2021.3101739}, journal={IEEE Transactions on Software Engineering}, publisher={Institute of Electrical and Electronics Engineers (IEEE)}, author={Dann, Andreas Peter and Plate, Henrik and Hermann, Ben and Ponta, Serena Elisa and Bodden, Eric}, year={2021}, pages={1–1} }
LibreCat
| DOI
2020 | Report | LibreCat-ID: 20712
@book{Schubert_Bodden_Hermann_2020, title={Accelerating Static Call-Graph, Points-to and Data-Flow Analysis Through Persisted Summaries}, author={Schubert, Philipp and Bodden, Eric and Hermann, Ben}, year={2020} }
LibreCat
| Files available
2019 | Journal Article | LibreCat-ID: 14896
@article{Dann_Hermann_Bodden_2019, title={ModGuard: Identifying Integrity &Confidentiality Violations in Java Modules}, DOI={10.1109/tse.2019.2931331}, journal={IEEE Transactions on Software Engineering}, author={Dann, Andreas and Hermann, Ben and Bodden, Eric}, year={2019}, pages={1–1} }
LibreCat
| DOI
2019 | Conference Paper | LibreCat-ID: 14897
@inproceedings{Dann_Hermann_Bodden_2019, title={SootDiff: bytecode comparison across different Java compilers}, DOI={10.1145/3315568.3329966}, booktitle={Proceedings of the 8th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2019}, author={Dann, Andreas and Hermann, Ben and Bodden, Eric}, year={2019} }
LibreCat
| DOI
| Download (ext.)
2019 | Conference Paper | LibreCat-ID: 14899
@inproceedings{Kruger_Hermann_2019, title={Can an Online Service Predict Gender? On the State-of-the-Art in Gender Identification from Texts}, DOI={10.1109/ge.2019.00012}, booktitle={2019 IEEE/ACM 2nd International Workshop on Gender Equality in Software Engineering (GE)}, author={Kruger, Stefan and Hermann, Ben}, year={2019} }
LibreCat
| DOI
2019 | Conference Paper | LibreCat-ID: 7626 |

@inproceedings{Schubert_Hermann_Bodden_2019, title={PhASAR: An Inter-Procedural Static Analysis Framework for C/C++}, volume={II}, DOI={10.1007/978-3-030-17465-1_22}, booktitle={Proceedings of the 25th International Conference on Tools and Algorithms for the Construction and Analysis of Systems (TACAS 2019), Held as Part of the European Joint Conferences on Theory and Practice of Software (ETAPS 2019)}, author={Schubert, Philipp and Hermann, Ben and Bodden, Eric}, year={2019}, pages={393–410} }
LibreCat
| Files available
| DOI
| Download (ext.)
2019 | Conference Paper | LibreCat-ID: 14898
@inproceedings{Schubert_Leer_Hermann_Bodden_2019, title={Know your analysis: how instrumentation aids understanding static analysis}, DOI={10.1145/3315568.3329965}, booktitle={Proceedings of the 8th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2019}, author={Schubert, Philipp and Leer, Richard and Hermann, Ben and Bodden, Eric}, year={2019} }
LibreCat
| DOI
2017 | Conference Paper | LibreCat-ID: 5725
@inproceedings{Holzinger_Hermann_Lerch_Bodden_Mezini_2017, title={Hardening Java’s Access Control by Abolishing Implicit Privilege Elevation}, DOI={10.1109/sp.2017.16}, booktitle={2017 IEEE Symposium on Security and Privacy (SP)}, publisher={IEEE}, author={Holzinger, Philipp and Hermann, Ben and Lerch, Johannes and Bodden, Eric and Mezini, Mira}, year={2017} }
LibreCat
| DOI
2017 | Conference Paper | LibreCat-ID: 5726
@inproceedings{Reif_Eichberg_Hermann_Mezini_2017, title={Hermes: assessment and creation of effective test corpora}, DOI={10.1145/3088515.3088523}, booktitle={Proceedings of the 6th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2017}, publisher={ACM Press}, author={Reif, Michael and Eichberg, Michael and Hermann, Ben and Mezini, Mira}, year={2017} }
LibreCat
| DOI
2017 | Conference Paper | LibreCat-ID: 5727
@inproceedings{Kübler_Müller_Hermann_2017, title={SootKeeper: runtime reusability for modular static analysis}, DOI={10.1145/3088515.3088518}, booktitle={Proceedings of the 6th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2017}, publisher={ACM Press}, author={Kübler, Florian and Müller, Patrick and Hermann, Ben}, year={2017} }
LibreCat
| DOI
2016 | Conference Paper | LibreCat-ID: 5728
@inproceedings{Reif_Eichberg_Hermann_Lerch_Mezini_2016, title={Call graph construction for Java libraries}, DOI={10.1145/2950290.2950312}, booktitle={Proceedings of the 2016 24th ACM SIGSOFT International Symposium on Foundations of Software Engineering - FSE 2016}, publisher={ACM Press}, author={Reif, Michael and Eichberg, Michael and Hermann, Ben and Lerch, Johannes and Mezini, Mira}, year={2016} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5729
@inproceedings{Glanz_Schmidt_Wollny_Hermann_2015, title={A vulnerability’s lifetime}, DOI={10.1145/2809563.2809612}, booktitle={Proceedings of the 15th International Conference on Knowledge Technologies and Data-driven Business - i-KNOW ’15}, publisher={ACM Press}, author={Glanz, Leonid and Schmidt, Sebastian and Wollny, Sebastian and Hermann, Ben}, year={2015} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5730
@inproceedings{Lerch_Hermann_2015, title={Design your analysis: a case study on implementation reusability of data-flow functions}, DOI={10.1145/2771284.2771289}, booktitle={Proceedings of the 4th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2015}, publisher={ACM Press}, author={Lerch, Johannes and Hermann, Ben}, year={2015} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5731
@inproceedings{Hermann_Reif_Eichberg_Mezini_2015, title={Getting to know you: towards a capability model for Java}, DOI={10.1145/2786805.2786829}, booktitle={Proceedings of the 2015 10th Joint Meeting on Foundations of Software Engineering - ESEC/FSE 2015}, publisher={ACM Press}, author={Hermann, Ben and Reif, Michael and Eichberg, Michael and Mezini, Mira}, year={2015} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5732
@inproceedings{Eichberg_Hermann_Mezini_Glanz_2015, title={Hidden truths in dead software paths}, DOI={10.1145/2786805.2786865}, booktitle={Proceedings of the 2015 10th Joint Meeting on Foundations of Software Engineering - ESEC/FSE 2015}, publisher={ACM Press}, author={Eichberg, Michael and Hermann, Ben and Mezini, Mira and Glanz, Leonid}, year={2015} }
LibreCat
| DOI
2014 | Conference Paper | LibreCat-ID: 5733
@inproceedings{Eichberg_Hermann_2014, title={A software product line for static analyses: The OPAL framework}, DOI={10.1145/2614628.2614630}, booktitle={Proceedings of the 3rd ACM SIGPLAN International Workshop on the State of the Art in Java Program Analysis - SOAP ’14}, publisher={ACM Press}, author={Eichberg, Michael and Hermann, Ben}, year={2014} }
LibreCat
| DOI
2014 | Conference Paper | LibreCat-ID: 5734
@inproceedings{Lerch_Hermann_Bodden_Mezini_2014, title={FlowTwist: efficient context-sensitive inside-out taint analysis for large codebases}, DOI={10.1145/2635868.2635878}, booktitle={Proceedings of the 22nd ACM SIGSOFT International Symposium on Foundations of Software Engineering - FSE 2014}, publisher={ACM Press}, author={Lerch, Johannes and Hermann, Ben and Bodden, Eric and Mezini, Mira}, year={2014} }
LibreCat
| DOI
Search
Filter Publications
Display / Sort
Export / Embed
23 Publications
2023 | Conference Paper | LibreCat-ID: 35083
@article{Dann_Hermann_Bodden_2023, series={International Conference on Software Engineering (ICSE)}, title={UpCy: Safely Updating Outdated Dependencies}, author={Dann, Andreas Peter and Hermann, Ben and Bodden, Eric}, year={2023}, collection={International Conference on Software Engineering (ICSE)} }
LibreCat
2022 | Journal Article | LibreCat-ID: 30511 |

@article{Schubert_Gazzillo_Patterson_Braha_Schiebel_Hermann_Wei_Bodden_2022, title={Static data-flow analysis for software product lines in C}, volume={29}, DOI={10.1007/s10515-022-00333-1}, number={135}, journal={Automated Software Engineering}, publisher={Springer Science and Business Media LLC}, author={Schubert, Philipp and Gazzillo, Paul and Patterson, Zach and Braha, Julian and Schiebel, Fabian and Hermann, Ben and Wei, Shiyi and Bodden, Eric}, year={2022} }
LibreCat
| DOI
| Download (ext.)
2021 | Journal Article | LibreCat-ID: 27045 |

@article{Luo_Pauck_Piskachev_Benz_Pashchenko_Mory_Bodden_Hermann_Massacci_2021, title={TaintBench: Automatic real-world malware benchmarking of Android taint analyses}, DOI={10.1007/s10664-021-10013-5}, journal={Empirical Software Engineering}, author={Luo, Linghui and Pauck, Felix and Piskachev, Goran and Benz, Manuel and Pashchenko, Ivan and Mory, Martin and Bodden, Eric and Hermann, Ben and Massacci, Fabio}, year={2021} }
LibreCat
| DOI
| Download (ext.)
2021 | Conference Paper | LibreCat-ID: 21598 |

@inproceedings{Schubert_Hermann_Bodden_2021, title={Lossless, Persisted Summarization of Static Callgraph, Points-To and Data-Flow Analysis}, booktitle={European Conference on Object-Oriented Programming (ECOOP)}, author={Schubert, Philipp and Hermann, Ben and Bodden, Eric}, year={2021} }
LibreCat
| Download (ext.)
2021 | Conference Paper | LibreCat-ID: 26406
@inproceedings{Schubert_Hermann_Bodden_Leer_2021, title={Into the Woods: Experiences from Building a Dataflow Analysis Framework for C/C++}, booktitle={SCAM ’21: IEEE International Working Conference on Source Code Analysis and Manipulation (Engineering Track)}, author={Schubert, Philipp and Hermann, Ben and Bodden, Eric and Leer, Richard}, year={2021} }
LibreCat
2021 | Conference Paper | LibreCat-ID: 26405
@inproceedings{Schubert_Sattler_Schiebel_Hermann_Bodden_2021, title={Modeling the Effects of Global Variables in Data-Flow Analysis for C/C++}, booktitle={2021 IEEE 21st International Working Conference on Source Code Analysis and Manipulation (SCAM)}, author={Schubert, Philipp and Sattler, Florian and Schiebel, Fabian and Hermann, Ben and Bodden, Eric}, year={2021} }
LibreCat
2021 | Journal Article | LibreCat-ID: 31132
@article{Dann_Plate_Hermann_Ponta_Bodden_2021, title={Identifying Challenges for OSS Vulnerability Scanners - A Study & Test Suite}, DOI={10.1109/tse.2021.3101739}, journal={IEEE Transactions on Software Engineering}, publisher={Institute of Electrical and Electronics Engineers (IEEE)}, author={Dann, Andreas Peter and Plate, Henrik and Hermann, Ben and Ponta, Serena Elisa and Bodden, Eric}, year={2021}, pages={1–1} }
LibreCat
| DOI
2020 | Report | LibreCat-ID: 20712
@book{Schubert_Bodden_Hermann_2020, title={Accelerating Static Call-Graph, Points-to and Data-Flow Analysis Through Persisted Summaries}, author={Schubert, Philipp and Bodden, Eric and Hermann, Ben}, year={2020} }
LibreCat
| Files available
2019 | Journal Article | LibreCat-ID: 14896
@article{Dann_Hermann_Bodden_2019, title={ModGuard: Identifying Integrity &Confidentiality Violations in Java Modules}, DOI={10.1109/tse.2019.2931331}, journal={IEEE Transactions on Software Engineering}, author={Dann, Andreas and Hermann, Ben and Bodden, Eric}, year={2019}, pages={1–1} }
LibreCat
| DOI
2019 | Conference Paper | LibreCat-ID: 14897
@inproceedings{Dann_Hermann_Bodden_2019, title={SootDiff: bytecode comparison across different Java compilers}, DOI={10.1145/3315568.3329966}, booktitle={Proceedings of the 8th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2019}, author={Dann, Andreas and Hermann, Ben and Bodden, Eric}, year={2019} }
LibreCat
| DOI
| Download (ext.)
2019 | Conference Paper | LibreCat-ID: 14899
@inproceedings{Kruger_Hermann_2019, title={Can an Online Service Predict Gender? On the State-of-the-Art in Gender Identification from Texts}, DOI={10.1109/ge.2019.00012}, booktitle={2019 IEEE/ACM 2nd International Workshop on Gender Equality in Software Engineering (GE)}, author={Kruger, Stefan and Hermann, Ben}, year={2019} }
LibreCat
| DOI
2019 | Conference Paper | LibreCat-ID: 7626 |

@inproceedings{Schubert_Hermann_Bodden_2019, title={PhASAR: An Inter-Procedural Static Analysis Framework for C/C++}, volume={II}, DOI={10.1007/978-3-030-17465-1_22}, booktitle={Proceedings of the 25th International Conference on Tools and Algorithms for the Construction and Analysis of Systems (TACAS 2019), Held as Part of the European Joint Conferences on Theory and Practice of Software (ETAPS 2019)}, author={Schubert, Philipp and Hermann, Ben and Bodden, Eric}, year={2019}, pages={393–410} }
LibreCat
| Files available
| DOI
| Download (ext.)
2019 | Conference Paper | LibreCat-ID: 14898
@inproceedings{Schubert_Leer_Hermann_Bodden_2019, title={Know your analysis: how instrumentation aids understanding static analysis}, DOI={10.1145/3315568.3329965}, booktitle={Proceedings of the 8th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2019}, author={Schubert, Philipp and Leer, Richard and Hermann, Ben and Bodden, Eric}, year={2019} }
LibreCat
| DOI
2017 | Conference Paper | LibreCat-ID: 5725
@inproceedings{Holzinger_Hermann_Lerch_Bodden_Mezini_2017, title={Hardening Java’s Access Control by Abolishing Implicit Privilege Elevation}, DOI={10.1109/sp.2017.16}, booktitle={2017 IEEE Symposium on Security and Privacy (SP)}, publisher={IEEE}, author={Holzinger, Philipp and Hermann, Ben and Lerch, Johannes and Bodden, Eric and Mezini, Mira}, year={2017} }
LibreCat
| DOI
2017 | Conference Paper | LibreCat-ID: 5726
@inproceedings{Reif_Eichberg_Hermann_Mezini_2017, title={Hermes: assessment and creation of effective test corpora}, DOI={10.1145/3088515.3088523}, booktitle={Proceedings of the 6th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2017}, publisher={ACM Press}, author={Reif, Michael and Eichberg, Michael and Hermann, Ben and Mezini, Mira}, year={2017} }
LibreCat
| DOI
2017 | Conference Paper | LibreCat-ID: 5727
@inproceedings{Kübler_Müller_Hermann_2017, title={SootKeeper: runtime reusability for modular static analysis}, DOI={10.1145/3088515.3088518}, booktitle={Proceedings of the 6th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2017}, publisher={ACM Press}, author={Kübler, Florian and Müller, Patrick and Hermann, Ben}, year={2017} }
LibreCat
| DOI
2016 | Conference Paper | LibreCat-ID: 5728
@inproceedings{Reif_Eichberg_Hermann_Lerch_Mezini_2016, title={Call graph construction for Java libraries}, DOI={10.1145/2950290.2950312}, booktitle={Proceedings of the 2016 24th ACM SIGSOFT International Symposium on Foundations of Software Engineering - FSE 2016}, publisher={ACM Press}, author={Reif, Michael and Eichberg, Michael and Hermann, Ben and Lerch, Johannes and Mezini, Mira}, year={2016} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5729
@inproceedings{Glanz_Schmidt_Wollny_Hermann_2015, title={A vulnerability’s lifetime}, DOI={10.1145/2809563.2809612}, booktitle={Proceedings of the 15th International Conference on Knowledge Technologies and Data-driven Business - i-KNOW ’15}, publisher={ACM Press}, author={Glanz, Leonid and Schmidt, Sebastian and Wollny, Sebastian and Hermann, Ben}, year={2015} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5730
@inproceedings{Lerch_Hermann_2015, title={Design your analysis: a case study on implementation reusability of data-flow functions}, DOI={10.1145/2771284.2771289}, booktitle={Proceedings of the 4th ACM SIGPLAN International Workshop on State Of the Art in Program Analysis - SOAP 2015}, publisher={ACM Press}, author={Lerch, Johannes and Hermann, Ben}, year={2015} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5731
@inproceedings{Hermann_Reif_Eichberg_Mezini_2015, title={Getting to know you: towards a capability model for Java}, DOI={10.1145/2786805.2786829}, booktitle={Proceedings of the 2015 10th Joint Meeting on Foundations of Software Engineering - ESEC/FSE 2015}, publisher={ACM Press}, author={Hermann, Ben and Reif, Michael and Eichberg, Michael and Mezini, Mira}, year={2015} }
LibreCat
| DOI
2015 | Conference Paper | LibreCat-ID: 5732
@inproceedings{Eichberg_Hermann_Mezini_Glanz_2015, title={Hidden truths in dead software paths}, DOI={10.1145/2786805.2786865}, booktitle={Proceedings of the 2015 10th Joint Meeting on Foundations of Software Engineering - ESEC/FSE 2015}, publisher={ACM Press}, author={Eichberg, Michael and Hermann, Ben and Mezini, Mira and Glanz, Leonid}, year={2015} }
LibreCat
| DOI
2014 | Conference Paper | LibreCat-ID: 5733
@inproceedings{Eichberg_Hermann_2014, title={A software product line for static analyses: The OPAL framework}, DOI={10.1145/2614628.2614630}, booktitle={Proceedings of the 3rd ACM SIGPLAN International Workshop on the State of the Art in Java Program Analysis - SOAP ’14}, publisher={ACM Press}, author={Eichberg, Michael and Hermann, Ben}, year={2014} }
LibreCat
| DOI
2014 | Conference Paper | LibreCat-ID: 5734
@inproceedings{Lerch_Hermann_Bodden_Mezini_2014, title={FlowTwist: efficient context-sensitive inside-out taint analysis for large codebases}, DOI={10.1145/2635868.2635878}, booktitle={Proceedings of the 22nd ACM SIGSOFT International Symposium on Foundations of Software Engineering - FSE 2014}, publisher={ACM Press}, author={Lerch, Johannes and Hermann, Ben and Bodden, Eric and Mezini, Mira}, year={2014} }
LibreCat
| DOI