VLDB 2026 Research / reviewers in the wild / expert
Ville Leppänen
dblp:l/VLeppanen
· DBLP profile ↗
56ranked-venue papers
2as first author
9since 2021 · last 2025
0000-0001-5296-677XORCID · verified
Domains — the database's venue-derived domains; a paper can count in several
Software engineering, systems software and programming languages · 19 · 3 since 2021Applied, interdisciplinary, general and emerging computing · 14 · 1 first-author · 3 since 2021Systems, architecture and hardware · 12 · 1 first-author · 1 since 2021Security and privacy · 12 · 2 since 2021Artificial intelligence and machine learning · 2 · 1 since 2021Databases, data management, data science and information retrieval · 1Human-computer interaction and ubiquitous computing · 1
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2025 | Assessing Privacy Practices on Ontario Municipal WebsitesabstractThe sharing of personal data on government websites is a major concern of daily users. The existing regulations do not allow for the collection and sharing of personal data. This study investigates the privacy practices of 444 municipal websites across Ontario, Canada, focusing on compliance with relevant data protection regulations and the extent of third-party data sharing. In particular, we examine the issues in line with Canadian standards, the Personal Information Protection and Electronic Documents Act (PIPEDA), the Canadian Privacy Act (CPA), and the Municipal Freedom of Information and Protection of Privacy Act (MFIPPA). We perform network traffic analysis, and apply a combination of privacy policies. Our findings uncover substantial gaps in privacy practices, including insufficient transparency, inadequate user-consent mechanisms, and pervasive third-party data sharing. The results of our study highlight an urgent need for the enhancement of privacy measures on government municipal websites to protect the personal data of users and for the implementation of practices that comply with local and international privacy laws, such as PIPEDA, CPA, MFIPPA, and the General Data Protection Regulation (GDPR). The study provides actionable recommendations aimed at strengthening data protection and restoring public trust in digital municipal services. Adegboola David Adelabu, Sampsa Rauti, Ville Leppänen, Zuhaibuddin Bhutto |
PST | 5 |
| 2025 | Third-Party Data Leaks and Privacy Compliance on Finnish Government Websites
Sammani Rajapaksha, Timi Heino, Sampsa Rauti, Panu Puhtila, Ville Leppänen |
WorldCIST (1) | 5 |
| 2023 | Extracting LPL privacy policy purposes from annotated web service source codeabstractAbstract Privacy policies are a mechanism used to inform users of the World Wide Web about the processing of their personal data. Such processing has special requirements, since personal data are regulated by data protection legislation. For example, a consent or another legal basis is typically needed. Privacy policies are documents used, among other things, to inform the data subject about processing of their personal data. These are formally represented by privacy languages. In this paper, we present a technique for constructing Layered Privacy Language policy data from web service code bases. Theoretically, we model the purposes of processing within web services by extending the privacy language with composition. We also present a formal analysis method for generating privacy policy purposes from the source code of web services. Furthermore, as a practical contribution, we present a static analysis tool that implements the theoretical solution. Finally, we report a brief case study for validating the tool Kalle Hjerppe, Jukka Ruohonen, Ville Leppänen |
Softw. Syst. Model. | 3 |
| 2022 | Assessing discrepancies between network traffic and privacy policies of public sector web servicesabstractOnline services are increasingly being used to complete everyday tasks, and ordinary users with very little technical knowledge have learned to use web services and applications. At the same time, many user applications are gradually moving from the traditional desktop environment to the web. Because of these developments, it is not surprising that user privacy has become a very important consideration when developing web services. In the current study, we assess the privacy of 34 web services provided and maintained by Finnish public sector bodies. We perform a network traffic analysis in order to find out what kind of personal data the studied services deliver to third party analytics services. We then take a look at the privacy policy documents of these web services and gauge their transparency and clarity by comparing their contents to the actual network data sent out by the web services. Our findings reveal numerous inconsistencies between what is said about handling personal data in the analyzed privacy policies and the actual traffic of the studied web services. Another prominent finding is the sheer amount of analytics services employed by the studied websites. We conclude that there is still an obvious need for web developers and public sector bodies to improve their awareness of existing privacy regulations and personal information their online services deliver to third parties. A lot of work also remains to be done in clearly and transparently communicating privacy-related matters to users. Timi Heino, Robin Carlsson, Sampsa Rauti, Ville Leppänen |
ARES | 4 |
| 2022 | Study of Third-Party Analytics Services on University Websites
Timi Heino, Sampsa Rauti, Robin Carlsson, Ville Leppänen |
HIS | 4 |
| 2022 | Where Does Your Data Go? Comparing Network Traffic and Privacy Policies of Public Sector Mobile Applications
Robin Carlsson, Timi Heino, Lauri Koivunen, Sampsa Rauti, Ville Leppänen |
WorldCIST (1) | 5 |
| 2022 | Performance and programmability comparison of the thick control flow architecture and current multicore processorsabstractAbstract Commercial multicore central processing units (CPU) integrate a number of processor cores on a single chip to support parallel execution of computational tasks. Multicore CPUs can possibly improve performance over single cores for independent parallel tasks nearly linearly as long as sufficient bandwidth is available. Ideal speedup is, however, difficult to achieve when dense intercommunication between the cores or complex memory access patterns is required. This is caused by expensive synchronization and thread switching, and insufficient latency toleration. These facts guide programmers away from straight-forward parallel processing patterns toward complex and error-prone programming techniques. To address these problems, we have introduced the Thick control flow (TCF) Processor Architecture. TCF is an abstraction of parallel computation that combines self-similar threads into computational entities. In this paper, we compare the performance and programmability of an entry-level TCF processor and two Intel Skylake multicore CPUs on commonly used parallel kernels to find out how well our architecture solves these issues that greatly reduce the productivity of parallel software development. Code examples are given and programming experiences recorded. Martti Forsell, Sara Nikula, Jussi Roivainen, Ville Leppänen, Jesper Larsson Träff |
J. Supercomput. | 4 |
| 2021 | From Setting Up Innovation in a Novel Context To Discovering Sustainable Business - A Framework for Short-Term EventsabstractShort-term events, like hackathons, are commonly applied to innovate on novel subject areas and on ground-breaking technologies. While such events have led to significant successful outcomes for many companies, the big questions facing organisers of these events are: "where do we start?, what should be done towards the hosting of a successful event?, and what should be done when the event is completed?" While several methods and supporting recommendations have been introduced for answering these questions, a common framework for the hosting and management of short-term events is still not available. This is a limitation, as having such a framework would allow organisers to carry out systematic analysis for the subject area, identify the most suitable pre-event analysis and support functions, combine these with the fitting and justified short-term event types, and carry the results of the event to fruitful, sustainable businesses with post-event operations. The opportunity to progress events into business ventures is particularly noteworthy given the rapid changes that are typical in the technology domain, and thus, the need to be both innovative and nimble in responding to such changes and ensuing opportunities. To fill this gap, we introduce an evidence-driven framework for hosting short-term events. Our framework presents several chronological modules coupled together to form a comprehensive, but agile set of practices. A review of the state-of-the-art and a partial empirical trial support the framework’s utility, notwithstanding the need for further work to enhance and trial the framework for organising other events. Mikko Jaakola, Tuisku Polvinen, Johannes Holvitie, Sherlock A. Licorish, Ville Leppänen |
SEAA | 5 |
| 2021 | Security in agile software development: A practitioner surveyabstractContext: Software security engineering provides the means to define, implement and verify security in software products. Software security engineering is performed by following a software security development life cycle model or a security capability maturity model . However, agile software development methods and processes, dominant in the software industry, are viewed to be in conflict with these security practices and the security requirements. Objective: Empirically verify the use and impact of software security engineering activities in the context of agile software development , as practiced by software developer professionals. Method: A survey ( N = 61 ) was performed among software practitioners in Finland regarding their use of 40 common security engineering practices and their perceived security impact, in conjunction with the use of 16 agile software development items and activities. Results: The use of agile items and activities had a measurable effect on the selection of security engineering practices. Perceived impact of the security practices was lower than the rate of use would imply: This was taken to indicate a selection bias, caused by e.g. developers’ awareness of only certain security engineering practices, or by difficulties in applying the security engineering practices into an iterative software development workflow. Security practices deemed to have most impact were proactive and took place in the early phases of software development. Conclusion: Systematic use of agile practices conformed, and was observed to take place in conjunction with the use of security practices. Security activities were most common in the requirement and implementation phases. In general, the activities taking place early in the life cycle were also considered most impactful. A discrepancy between the level of use and the perceived security impact of many security activities was observed. This prompts research and methodological development for better integration of security engineering activities into software development processes, methods, and tools. Kalle Rindell, Jukka Ruohonen, Johannes Holvitie, Sami Hyrynsalmi, Ville Leppänen |
Inf. Softw. Technol. | 5 |
| 2019 | The General Data Protection Regulation: Requirements, Architectures, and ConstraintsabstractThe General Data Protection Regulation (GDPR) in the European Union is the most famous recently enacted privacy regulation. Despite of the regulation's legal, political, and technological ramifications, relatively little research has been carried out for better understanding the GDPR's practical implications for requirements engineering and software architectures. Building on a grounded theory approach with close ties to the Finnish software industry, this paper contributes to the sealing of this gap in previous research. Three questions are asked and answered in the context of software development organizations. First, the paper elaborates nine practical constraints under which many small and medium-sized enterprises (SMEs) often operate when implementing solutions that address the new regulatory demands. Second, the paper elicits nine regulatory requirements from the GDPR for software architectures. Third, the paper presents an implementation for a software architecture that complies both with the requirements elicited and the constraints elaborated. Kalle Hjerppe, Jukka Ruohonen, Ville Leppänen |
RE | 3 |
| 2018 | Crossing Cross-Domain Paths in the Current WebabstractThe loading of resources from third-parties has evoked new security and privacy concerns about the current world wide web. Building on the concepts of forced and implicit trust, this paper examines cross-domain transmission control protocol (TCP) connections that are initiated to domains other than the domain queried with a web browser. The dataset covers nearly ten thousand domains and over three hundred thousand TCP connections initiated by querying popular Finnish websites and globally popular sites. According to the results, (i) cross-domain connections are extremely common in the current Web. (ii) Most of these transmit encrypted content, although mixed content delivery is relatively common; many of the cross-domain connections deliver unencrypted content at the same time. (iii) Many of the cross-domain connections are initiated to known web advertisement domains, but a much larger share traces to social media platforms and cloud infrastructures. Finally, (iv) the results differ slightly between the Finnish web sites sampled and the globally popular sites. With these results, the paper contributes to the ongoing work for better understanding cross-domain connections and dependencies in the world wide web. Jukka Ruohonen, Joonas Salovaara, Ville Leppänen |
PST | 3 |
| 2018 | On the Integrity of Cross-Origin JavaScripts
Jukka Ruohonen, Joonas Salovaara, Ville Leppänen |
SEC | 3 |
| 2018 | Investigating the Effects of Agile Practices and Processes on Technical Debt - The Viewpoint of the Brazilian Software IndustryabstractThe current scenario of software development is characterized by a wide adoption of agile methodologies, which define processes and practices that address a range of problems faced by development teams.However, there is still little information on how these methodologies deal with technical debt(TD).This work presents the results of a replicated survey(originally executed in Finland) whose goal was to investigate which agile practices and processes are sensitive to TD.Despite this replication allows different types of analysis, the focus of this paper will be on the analysis of the effects of the agile practices and processes on TD from the perspective of the Brazilian software industry, where the study was replicated.At total, 62 practitioners from different organizations answered the questionnaire.The results indicated that participants already had a good knowledge about TD, instances of TD reside in the software implementation and are caused due to deficiencies in its architecture, the size of a debt item is proportional to its impact on the project, and, refactoring and iteration have the most positive effect on TD.This replication also contributes to the investigated topic through the accumulation of evidence about the findings, thereby increasing the level of confidence in results. Vivyane Caires, Nicolli Rios, Johannes Holvitie, Ville Leppänen, Manoel G. Mendonça, Rodrigo O. Spínola |
SEKE | 4 |
| 2018 | Towards Profiling Program Instances in Host-Based Intrusion Detection Systems by Recognizing Software Update PatternsabstractHost intrusion detection systems are used to analyze internal events on host machines and detect behavioral patterns that differ from normal operation of the system and its processes. One important aspect in observing the behavior of processes are the application updates that may change the behavior of an application but also potentially help to build a profile for the application when observing its update patterns. In this study, we observe update frequencies and patterns of a set of applications on 100 machines during an analysis period of 100 days. Our preliminary results indicate that it is possible to detect clear software update patterns that can be used for profiling processes. Lauri Koivunen, Sampsa Rauti, Ville Leppänen |
SIN | 3 |
| 2018 | Recognizing Dynamic Fields in Network Traffic with a Manually Assisted Solution
Jarko Papalitsas, Jani Tammi, Sampsa Rauti, Ville Leppänen |
WorldCIST (2) | 4 |
| 2018 | Technical debt and agile software development practices and processes: An industry practitioner surveyabstractContext: Contemporary software development is typically conducted in dynamic, resource-scarce environments that are prone to the accumulation of technical debt. While this general phenomenon is acknowledged, what remains unknown is how technical debt specifically manifests in and affects software processes, and how the software development techniques employed accommodate or mitigate the presence of this debt. Objectives: We sought to draw on practitioner insights and experiences in order to classify the effects of agile method use on technical debt management, given the popularity and perceived success of agile methods. We explore the breadth of practitioners’ knowledge about technical debt; how technical debt is manifested across the software process; and the perceived effects of common agile software development practices and processes on technical debt. In doing so, we address a research gap in technical debt knowledge and provide novel and actionable managerial recommendations. Method: We designed, tested and executed a multi-national survey questionnaire to address our objectives, receiving 184 responses from practitioners in Brazil, Finland, and New Zealand. Results: Our findings indicate that: 1) Practitioners are aware of technical debt, although, there was under utilization of the concept, 2) Technical debt commonly resides in legacy systems, however, concrete instances of technical debt are hard to conceptualize which makes it problematic to manage, 3) Queried agile practices and processes help to reduce technical debt; in particular, techniques that verify and maintain the structure and clarity of implemented artifacts (e.g., Coding standards and Refactoring) positively affect technical debt management. Conclusions: The fact that technical debt instances tend to have characteristics in common means that a systematic approach to its management is feasible. However, notwithstanding the positive effects of some agile practices on technical debt management, competing stakeholders’ interests remain a concern. Johannes Holvitie, Sherlock A. Licorish, Rodrigo O. Spínola, Sami Hyrynsalmi, Stephen G. MacDonell, Thiago Souto Mendes, Jim Buchan, Ville Leppänen |
Inf. Softw. Technol. | 8 |
| 2018 | Diversification and obfuscation techniques for software security: A systematic literature reviewabstractContext: Diversification and obfuscation are promising techniques for securing software and protecting computers from harmful malware. The goal of these techniques is not removing the security holes, but making it difficult for the attacker to exploit security vulnerabilities and perform successful attacks. Objective: There is an increasing body of research on the use of diversification and obfuscation techniques for improving software security; however, the overall view is scattered and the terminology is unstructured. Therefore, a coherent review gives a clear statement of state-of-the-art, normalizes the ongoing discussion and provides baselines for future research. Method: In this paper, systematic literature review is used as the method of the study to select the studies that discuss diversification/obfuscation techniques for improving software security. We present the process of data collection, analysis of data, and report the results. Results: As the result of the systematic search, we collected 357 articles relevant to the topic of our interest, published between the years 1993 and 2017. We studied the collected articles, analyzed the extracted data from them, presented classification of the data, and enlightened the research gaps. Conclusion: The two techniques have been extensively used for various security purposes and impeding various types of security attacks. There exist many different techniques to obfuscate/diversify programs, each of which targets different parts of the programs and is applied at different phases of software development life-cycle. Moreover, we pinpoint the research gaps in this field, for instance that there are still various execution environments that could benefit from these two techniques, including cloud computing, Internet of Things (IoT), and trusted computing. We also present some potential ideas on applying the techniques on the discussed environments. Shohreh Hosseinzadeh, Sampsa Rauti, Samuel Laurén, Jari-Matti Mäkelä, Johannes Holvitie, Sami Hyrynsalmi, Ville Leppänen |
Inf. Softw. Technol. | 7 |
| 2018 | A case study on software vulnerability coordination
Jukka Ruohonen, Sampsa Rauti, Sami Hyrynsalmi, Ville Leppänen |
Inf. Softw. Technol. | 4 |
| 2018 | REPLICA MBTAC: multithreaded dual-mode processor
Martti Forsell, Jussi Roivainen, Ville Leppänen |
J. Supercomput. | 3 |
| 2017 | Busting a Myth: Review of Agile Security Engineering MethodsabstractEngineering methods are essential in software development, and form a crucial element in the design and implementation of software security. Security engineering processes and activities have a long and well-standardized history of integration with software development methods. The inception of iterative and incremental software development methods raised suspicions of an inherent incompatibility between the traditional non-agile security processes and the new agile methods. This suspicion still affects the attitude towards agile security. To examine and explore this myth, this study presents a literature review of a selected set of agile secure software development methods. A systematic literature method was used to find the definitive set of secure agile software development methods, of which a core set of 11 papers was selected for analysis, and the security activities documented in the methods were extracted. The results show a wide and well-documented adaptation of security activities in agile software development, with the observed activities covering the whole security development life cycle. Based on the analysis, the inherent insecurity of the agile software development methods can be declared to be a mere myth. Kalle Rindell, Sami Hyrynsalmi, Ville Leppänen |
ARES | 3 |
| 2017 | How PHP Releases Are Adopted in the Wild?abstractThis empirical paper examines the adoption of PHP releases in the the contemporary world wide web. Motivated by continuous software engineering practices and software traceability improvements for release engineering, the empirical analysis is based on big data collected by web crawling. According to the empirical results based on discrete time-homogeneous Markov chain (DTMC) analysis, (i) adoption of PHP releases has been relatively uniform across the domains observed, (ii) which tend to also adopt either old or new PHP releases relatively infrequently. Although there are outliers, (iii) downgrading of PHP releases is generally rare. To some extent, (iv) the results vary between the recent history from 2016 to early 2017 and the long-run evolution in the 2010s. In addition to these empirical results, the paper contributes to the software evolution and release engineering research traditions by elaborating the applied use of DTMCs for systematic empirical tracing of online software deployments. Jukka Ruohonen, Ville Leppänen |
APSEC | 2 |
| 2017 | The Transformation Challenge of IT Education and Training in Higher Education and Industry
Anne-Maarit Majanoja, Ville Taajamaa, Ville Leppänen, Erkki Sutinen |
CSEDU (2) | 3 |
| 2017 | Mining social networks of open source CVE coordinationabstractCoordination is one central tenet of software engineering practices and processes. In terms of software vulnerabilities, coordination is particularly evident in the processes used for obtaining Common Vulnerabilities and Exposures (CVEs) identifiers for discovered and disclosed vulnerabilities. As the central CVE tracking infrastructure maintained by the non-profit MITRE Corporation has recently been criticized for time delays in CVE assignment, almost an ideal case is available for studying software and security engineering coordination practices with practical relevance. Given this pragmatic motivation, this paper examines open source CVE coordination that occurs on the public oss-security mailing list. By combining social network analysis with a data-driven, exploratory research approach, the paper asks six data mining questions with practical relevance. By contemplating about answers to the questions asked by means of descriptive statistics, the paper consequently contributes not only to the contemporary industry debates, but also to the tradition of empirical vulnerability research. The perspective and the case are both novel in this tradition, thus opening new avenues for further empirical inquiries and practical improvements for the contemporary CVE coordination. Jukka Ruohonen, Sami Hyrynsalmi, Sampsa Rauti, Ville Leppänen |
IWSM-Mensura | 4 |
| 2017 | A Survey on Fake Entities as a Method to Detect and Monitor Malicious ActivityabstractThis paper surveys research concentrating on fake entities as a method to detect and monitor malware. A fake entity is a digital entity (such as a file) no one except a malicious attacker should access. When the entity is accessed, the defender immediately knows there is unwanted activity in the system and can start to monitor it. We discuss both faking different entities on one machine and in a network using virtual groups of fake hosts. Sampsa Rauti, Ville Leppänen |
PDP | 2 |
| 2017 | Top Management Support for Software Cost Estimation - A Case Study of the Current Practice and Impacts
Jurka Rahikkala, Sami Hyrynsalmi, Ville Leppänen, Tommi Mikkonen, Johannes Holvitie |
PROFES | 3 |
| 2017 | Internal interface diversification with multiple fake interfacesabstractMalware uses knowledge of well-known interfaces to achieve its goals. However, if we uniquely diversify these interfaces in each system, the malware no longer knows the "language" of a specific system and it becomes much more difficult for malicious programs to operate. This paper extends the idea of interface diversification by presenting a scheme where a fake original interface and multiple other fake interfaces are provided along with the valid interface in order to log the suspicious activity in the system and possibly deceive malware by initiating fallacious interaction with it. We also present a proof-of-concept implementation of this scheme in Linux environment and conduct experiments with it. Sampsa Rauti, Ville Leppänen |
SIN | 2 |
| 2017 | Practical challenges in building fake services with the record and play approachabstractOne way to learn more about how a malicious program functions and what its objectives are is to deceive it with fake services that provide responses containing fabricated data. This goal can be achieved with so called record and play -honeypot that learns what the normal communication between clients and a server looks like and then tries to mimic it, but fabricates the contents of the responses so that they contain fake data. This paper outlines and presents the challenges faced in practical development of such honeypot. Some solutions and recommendations that mitigate the identified problems are also considered. Jani Tammi, Sampsa Rauti, Ville Leppänen |
SIN | 3 |
| 2017 | The Impact of Agile Software Development Approach on Software Developers' Responsibilities
Anne-Maarit Majanoja, Petri Avikainen, Ville Leppänen |
WorldCIST (1) | 3 |
| 2017 | A Survey on Anti-honeypot and Anti-introspection Methods
Joni Uitto, Sampsa Rauti, Samuel Laurén, Ville Leppänen |
WorldCIST (2) | 4 |
| 2017 | PEN: a power law-enhanced network design for high efficiency multicore architectureabstractSummary We propose a heterogeneous on‐chip interconnection aiming at high efficiency multicore processors. An ideal on‐chip interconnection should have low latency, high throughput, low power consumption, and high scalability. However, these metrics are usually contradictory with each other. Besides, a design should focus on the requirements of real applications. We investigate the characteristics of several parallel applications. It is found that the distribution of traffic is similar as the power law. We also discovered hot spot traffic, as well as bursty traffic from applications. Meanwhile, the average injection rate of parallel applications is relatively low. The proposed network is based on a dual‐net concentrated mesh, where 2 physical networks are implemented for processing different messages and improve throughput. A diagonal interconnection is used in the central part of the network for alleviating the traffic hot spot without significant hardware overhead. We evaluate the proposed design with synthetic traffic and real applications by using a simulator. Results indicate that, on average for 8 applications, the network latency of the proposed design has reduced by 32% compared with regular mesh. Concerning efficiency when executing applications, the average energy delay product of the proposed design is 52.7% and 29.7% better than mesh and concentrate mesh, respectively. Thomas Canhao Xu, Ville Leppänen |
Concurr. Comput. Pract. Exp. | 2 |
| 2017 | Tightroping between APT and BCI in small enterprisesabstractPurpose The contemporary internet provisions increasingly sophisticated security attacks. Besides underlining the advanced nature of these attacks, the concept of an advanced persistent threat (APT) catalyzes the important perspective of longitudinal persistence; attacks are not only carefully planned and targeted but the subsequent exploitation period covers long periods of time. If an APT successfully realizes into such exploitation, information assets may be continuously monitored for harvesting business-critical information (BCI). These threats are relevant for the security of small enterprises, and this study aims to examine the qualitative factors that shape the security mindsets among these. Design/methodology/approach The data are collected with semi-structured interviews of six enterprises in a small regional market segment. The analysis is based on a fourfold taxonomy that delivers three mindset profiles, while particular emphasis is placed on the subjective security notions that shape the typical strategizing among enterprises. Findings APT is poorly understood among the observed segment, which tends to often also explicitly downplay the strategic relevance of the concept, but a more pressing challenge relates to the observation that business data is often perceived to have no value. The delivered results can be used to improve the situation. Originality/value This study is among the firsts to explore perceptions of small enterprises toward APT and BCI. The results reveal problematic mindsets and offers new avenues for practitioners as well as academics to study and improve the situation. Jesse Kaukola, Jukka Ruohonen, Antti Tuomisto, Sami Hyrynsalmi, Ville Leppänen |
Inf. Comput. Secur. | 5 |
| 2016 | Case Study of Security Development in an Agile Environment: Building Identity Management for a Government AgencyabstractIn contemporary software development projects and computing tasks, security concerns have an increasing effect, and sometimes even guide both the design and the project's processes. In certain environments, the demand for the security becomes the main driver of the development. In these cases, the development of the product requires special security arrangements for development and hosting, and specific security-oriented processes for governance. Compliance with these requirements using agile development methods may not only be a chance to improve the project efficiency, but can in some cases, such as in the case discussed in this paper, be an organizational requirement. This paper describes a case of building a secure identity management system and its management processes, in compliance with the Finnish government's VAHTI security instructions. The building project was to be implemented in accordance to the governmental security instructions, while following the service provider's own management framework. Project itself was managed with Scrum. The project's steering group required the use of Scrum, and this project may be viewed as a showcase of Scrum's suitability to multi-teamed, multi-site, security standard-compliant work. We also discuss the difficulties of fulfilling strict security regulations regarding both the development process and the end product in this project, and the difficulties utilizing Scrum to manage a multi-site project organization. Evaluation of the effects of the security work to project cost and efficiency is also presented. Finally, suggestions to enhance the Scrum method for security-related projects are made. Kalle Rindell, Sami Hyrynsalmi, Ville Leppänen |
ARES | 3 |
| 2016 | Exploring the clustering of software vulnerability disclosure notifications across software vendorsabstractThis exploratory empirical paper investigates annual time delays between vulnerability disclosure notifications and acknowledgments by means of network analysis. These delays are approached through a potential clustering effect of vulnerabilities across software vendors. The analysis is based on a projection from bipartite vendor-vulnerability structures to one-mode vendor-vendor networks, while the hypothesized clustering effect is approached with a conventional community detection algorithm. According to the results, (a) vulnerabilities cluster across vendors, (b) which also explains a portion of the time delays, although (c) the clustering is not stable annually. The computed network (d) clusters can be also interpreted by reflecting these against common software security attack surfaces. The results can be used to contemplate (e) practical means with which the efficiency of vulnerability disclosure could be improved. Jukka Ruohonen, Johannes Holvitie, Sami Hyrynsalmi, Ville Leppänen |
AICCSA | 4 |
| 2016 | Adoption and Suitability of Software Development Methods and PracticesabstractIn seeking to complement consultants' and tool vendors' reports, there has been an increasing academic focus on understanding the adoption and use of software development methods and practices. We surveyed practitioners working in Brazil, Finland, and New Zealand in a transnational study to contribute to these efforts. Among our findings we observed that most of the 184 practitioners in our sample focused on a small portfolio of projects that were of short duration. In addition, Scrum and Kanban were used most; however, some practitioners also used conventional methods. Coding Standards, Simple Design and Refactoring were used most by practitioners, and these practices were held to be largely suitable for project and process management. Our evidence points to the need to properly understand and support a wide range of software methods. Sherlock A. Licorish, Johannes Holvitie, Sami Hyrynsalmi, Ville Leppänen, Rodrigo O. Spínola, Thiago Souto Mendes, Stephen G. MacDonell, Jim Buchan |
APSEC | 4 |
| 2016 | Modelling Propagation of Technical DebtabstractNoting the overwhelming speed during software development, and particularly in environments where rapid delivery is the norm, the lack of accumulated technical debt information could result in ineffective management. We introduce technical debt propagation channels in this paper to advance software maintenance research on two accounts: (1) We describe the fundamental components for the channels, allowing identification of distinct channels, and (2) we describe a procedure to identify and abstract technical debt channels in order to produce technical debt propagation models. Our propagation models pursue automation of technical debt information maintenance with program analysis results, and translation of the maintained information between existing-and currently disconnected-technical debt management solutions. We expect the immediate technical debt information to enhance applicability and effectiveness of existing technical debt management approaches. Johannes Holvitie, Sherlock A. Licorish, Ville Leppänen |
SEAA | 3 |
| 2016 | Analysing and Modelling the On-Chip Traffic of Parallel ApplicationsabstractIn this paper, we investigate the traffic characteristics of parallel and high performance computing applications. Parallel applications that utilize multiple processing cores are widespread nowadays due to the trend of multicore processors. However the design paradigm of traditional sequential execution and concurrent execution can vary significantly. Therefore the estimation and prediction approaches used in conventional software can be limited for parallel applications. The communication among different nodes in a multicore system should be analysed and categorized in order to improve the accuracy of system simulation. We study several parallel applications running on a full system simulation environment. The communication traces among different nodes are collected and analysed. We discuss the detailed characteristics of these applications. The applications are grouped into different categories depending on several parallel programming paradigms. We apply power-law model with maximum likelihood estimation, Gaussian mixture model, as well as the polynomial model for fitting the trace data. A generic synthetic traffic model is proposed based on the results. Experiments show the proposed model can be used to evaluate the performance of parallel systems more accurately than by other synthetic traffic models. Thomas Canhao Xu, Jonne Pohjankukka, Ville Leppänen |
SEAA | 3 |
| 2016 | Trading exploits online: A preliminary case studyabstractA software defect that exposes a software system to a cyber security attack is known as a software vulnerability. A software security exploit is an engineered software solution that successfully exploits the vulnerability. Exploits are used to break into computer systems, but exploits are currently used also for security testing, security analytics, intrusion detection, consultation, and other legitimate and legal purposes. A well-established market emerged in the 2000s for software vulnerabilities. The current market segments populated by small and medium-sized companies exhibit signals that may eventually lead to a similar industrialization of software exploits. To these ends and against these industry trends, this paper observes the first online market place for trading exploits between buyers and sellers. The paper adopts three different perspectives to study the case. The paper (a) portrays the studied exploit market place against the historical background in the software security industry. A qualitative assessment is made to (b) evaluate the case against the common characteristics of traditional online market places. The qualitative observations are used in the quantitative part (c) for predicting the price of exploits with partial least squares regression. The results show that (i) the case is unique from a historical perspective, although (ii) the online market place characteristics are familiar. The regression estimates also indicate that (iii) the pricing of exploits is only partially dependent on such factors as the targeted platform, the date of disclosure of the exploited vulnerability, and the quality assurance service provided by the market place provider. The results allow to contemplate (iv) practical means for enhancing the market place. Jukka Ruohonen, Sami Hyrynsalmi, Ville Leppänen |
RCIS | 3 |
| 2015 | Security and Privacy in Cloud Computing via Obfuscation and Diversification: A SurveyabstractThe development of cloud computing has facilitate the organizations with its services. This makes the security and privacy of the cloud even more significant. Diversification and obfuscation approaches are of the most promising proactive techniques that protect computers from harmful malware, by preventing them to take advantage of the security vulnerabilities. There is a large body of research on the use of diversification and obfuscation techniques for improving the security in various domains, including cloud computing. Cloud computing provides an excellent setting for applying diversification/obfuscation, as the computing platforms (virtual machines) are implemented in software. The main objective of this study is to determine in what ways obfuscation and diversification techniques are used to enhance the security and privacy of the cloud computing, and discover the potential avenues for the further research. To achieve this goal, we systematically review and report the papers that discuss/propose a technique to enhance the security and privacy of the cloud, using diversification and obfuscation techniques. As the result of the search we collected 43 papers published on the topic. In this report we present the process of data collection, analysis of the results, and classification of the related studies. The classification is done based on how the diversification/obfuscation techniques are used to enhance the security in cloud computing environment. The presented study gives a clear view of the state of the art of the existing works in the field, and sheds light on the areas remained intact which could be avenues for further research. The existing works cover surprisingly a small set of the wealth of opportunities for diversification/obfuscation. Shohreh Hosseinzadeh, Sami Hyrynsalmi, Mauro Conti, Ville Leppänen |
CloudCom | 4 |
| 2015 | DBFS: Dual Best-First Search Mapping Algorithm for Shared-Cache Multicore Processors
Thomas Canhao Xu, Ville Leppänen |
ICA3PP (1) | 2 |
| 2015 | The sigmoidal growth of operating system security vulnerabilities: An empirical revisit
Jukka Ruohonen, Sami Hyrynsalmi, Ville Leppänen |
Comput. Secur. | 3 |
| 2015 | Performance tuning and sparse traversal technique for a cell-based fetch length algorithm on a GPUabstractSummary For determining distances (fetch lengths) from points to polygons in a two‐dimensional Euclidean plane, cell‐based algorithms provide a simple and effective solution. They divide the input area into a grid of cells that cover the area. The objects are stored into the appropriate cells, and the resulting structure is used for solving the problem. When the input objects are distributed unevenly or the cell size is small, most of the cells may be empty. The representation is then called sparse. In the method proposed in this work, each cell contains information about its distance to the nonempty cells. It is then possible to skip over several empty cells at a time without memory accesses. A cell‐based fetch length algorithm is implemented on a graphics processing unit (GPU). Because control flow divergence reduces its performance, several methods to reduce the divergence are studied. While many of the explicit attempts turn out to be unsuccessful, sorting of the input data and sparse traversal are observed to greatly improve performance: compared with the initial GPU implementation, up to 45‐fold speedup is reached. The speed improvement is greatest when the map is very sparse and the points are given in a random order. Copyright © 2015 John Wiley & Sons, Ltd. Mika Murtojärvi, Olli Nevalainen, Ville Leppänen |
Concurr. Comput. Pract. Exp. | 3 |
| 2015 | PDNOC: Partially diagonal network-on-chip for high efficiency multicore systemsabstractSummary With the constantly increasing of number of cores in multicore processors, more emphasis should be paid to the on‐chip interconnect. Performance and power consumption of an on‐chip interconnect are directly affected by the network topology. Researchers have proposed various topologies to optimize these metrics. The efficiency can also be optimized by proper mapping of applications. Therefore in this paper, we propose a novel partially diagonal network‐on‐chip (PDNOC) design that takes advantage of both heterogeneous network topology and congestion‐aware application mapping. We analyse the partially diagonal network in terms of interconnect structure, area usage, power consumption, routing algorithm and implementation complexity. The key insight that enables the PDNOC is that most communication patterns in real‐world applications are hot‐spot and bursty. We implement a full system simulation environment using SPLASH‐2 benchmarks. Performance metrics of standard mesh, concentrated mesh, full diagonal mesh and four types of the proposed PDNOC are measured in terms of network latency, application execution time and energy delay product. Evaluation results show that on average, the proposed PDNOC designs provide up to 36% improvement in execution time over concentrated mesh, and 3.6× better energy delay product over fully connected diagonal network. PDNOC design with two adjacent PD networks is a better candidate for higher efficiency, while four PD networks provide better performance. Copyright © 2014 John Wiley & Sons, Ltd. Thomas Canhao Xu, Ville Leppänen, Pasi Liljeberg, Juha Plosila, Hannu Tenhunen |
Concurr. Comput. Pract. Exp. | 2 |
| 2015 | Time series trends in software evolutionabstractAbstract Background The laws of software evolution were formulated to describe time series trends in software over time. Objective Building on econometrics, the paper relates the laws theoretically to the concept of stationarity. The theoretical argumentation builds on the fact that in a stationary time series, the mean and variance remain constant. The concept is further elaborated with different statistical types of time series trends. These provide the objective for the empirical experiment that evaluates whether software size measures in a typical software evolution dataset are stationary. Method The time series analysis is based on conventional statistical tests for the evaluation of stationarity. Results The empirical dataset contains time series extracted from the version control systems used in Vaadin and Tomcat between circa 2006 and 2013. The results establish that the observed time series are neither stationary nor follow simple mathematical functions that would translate into stationarity. Conclusion The testing framework presented in the paper allows evaluating the stationarity of software evolution time series. The results can be interpreted theoretically against the laws of software evolution. These methodological and theoretical contributions improve the foundations of predictive time series modeling of software evolution problems. Copyright © 2015 John Wiley & Sons, Ltd. Jukka Ruohonen, Sami Hyrynsalmi, Ville Leppänen |
J. Softw. Evol. Process. | 3 |
| 2015 | Event-driven asynchronous method calls with the D-Bus message systemabstractThe use of inter-process communication can yield many benefits for event-driven desktop software. However, inter-process communication (IPC) research has traditionally been focused on calculation-oriented distributed computing. This article shows that existing IPC solutions are a poor fit for the constraints imposed by event-driven programming. Our novel solution is built on top of the D-Bus system, which enjoys increased practical usage, but is still scantily researched. We focus on efficient handling of asynchronous D-Bus method calls, in a fashion similar to how Hypertext Transfer Protocol requests are treated in Asynchronous JavaScript and XML Web applications. This is supplemented with two design patterns that simplify processing of results for many kinds of asynchronous operations in event-driven software, besides just D-Bus calls. Our approach is shown to be more appropriate for event-driven applications than traditional remote procedure call systems in aspects as diverse as interactivity, threading complexity and electrical power usage. Copyright © 2013 John Wiley & Sons, Ltd. Olli Salli, Olli Nevalainen, Ville Leppänen |
Softw. Pract. Exp. | 3 |
| 2013 | DSNOC: A Hybrid Dense-Sparse Network-on-Chip Architecture for Efficient Scalable ComputingabstractIn this paper, we propose a novel hybrid Dense-Sparse Network-on-Chip (DSNOC) design that takes advantage of both dense and sparse networks. The NoC paradigm is introduced to solve the communication bottleneck and improve system scalability for multicore processors with hundreds or even thousands of cores. Dense mesh network has been used widely in NoCs due to the simplicity of the design and implementation. However the scalability of dense network can be a bottleneck in systems with high traffic volume. Sparse network has been proposed to provide higher bandwidth and better scalability than the dense network, while the size of the interconnection system becomes impractical for large systems. By combining the benefits of both networks, system performance and efficiency can be improved with a proper hybrid design. We analyse and investigate router utilization and traffic distribution of typical mesh networks. The hybrid solution is explored with theoretical analysis and implementation considerations. Experiments are performed by using a full system simulation environment. The evaluation results show that, compared with the dense network, the average network latency and energy delay product of DSNOC are improved by 10.3% and 33% respectively. Thomas Canhao Xu, Ville Leppänen, Martti Forsell |
DASC | 2 |
| 2012 | Design of the Language Replica for Hybrid PRAM-NUMA Many-core ArchitecturesabstractParallel programming is widely considered very demanding for an average programmer due to inherent asynchrony of underlying parallel architectures. In this paper we describe the main design principles and core features of Replica -- a parallel language aimed for high-level programming of a new paradigm of reconfigurable, scalable and powerful synchronous shared memory architectures that promise to make parallel programming radically easier with the help of strict memory consistency and deterministic synchronous execution of hardware threads and multi-operations. Jari-Matti Mäkelä, Erik Hansson, Daniel Åkesson, Martti Forsell, Christoph W. Kessler, Ville Leppänen |
ISPA | 6 |
| 2011 | Cost of Sparse Mesh Layouts Supporting Throughput ComputingabstractThe purpose of this paper is to estimate the cost of utilizing under populated, or sparse, networks on chip (NOC) for chip multiprocessors (CMP). In under-populated NOCs, only a portion of nodes are sources and sinks whereas the rest are simple intermediate nodes increasing communication bandwidth. Compared to dense NOCs, where all nodes can be sources and sinks of communication, the under populated NOCs can be scaled so that any degree of communication frequency of nodes can be supported. The drawback of under populated NOCs is larger network area and bigger logical diameter. GPGPU-style stream-based or high-throughput CMPs can be used to hide the effect of longer latencies. In this paper, we present layouts for mesh-based under populated networks, calculate their wire length distributions and the overall area. Moreover, we present energy consumption calculations for such networks, and show that while the network part of a CMP system based on under populated NOCs can play a major role when considering the chip area and energy consumption, it can be pushed down by increasing the number of dimensions and using meshes instead of tori. We also compare various multidimensional sparse mesh-layouts and conclude the 3-dimensional and 4-dimensional sparse meshes to be the most attractive ones for throughput computing. Martti Forsell, Ville Leppänen, Martti Penttonen |
DSD | 2 |
| 2011 | A moving threads processor architecture MTPA
Martti Forsell, Ville Leppänen |
J. Supercomput. | 2 |
| 2010 | Thinning protocols for routing h-relations over shared media
Anssi Kautonen, Ville Leppänen, Martti Penttonen |
J. Parallel Distributed Comput. | 2 |
| 2009 | Determining directional distances between points and shorelines using sweep line technique
Mika Murtojärvi, Ville Leppänen, Olli Nevalainen |
Int. J. Geogr. Inf. Sci. | 2 |
| 2009 | Client-based cohesion metrics for Java programs
Sami Mäkelä, Ville Leppänen |
Sci. Comput. Program. | 2 |
| 2008 | Embedding Rule-Based Security Monitors into Java ProgramsabstractIn this paper we study securing mobile code execution by embedding a rule-based security monitor into the mobile code before execution on a platform. A security monitor guards how the mobile code uses resources of the execution platform. We consider that this run-time monitoring approach is more practical than providing a proof of security properties along with the mobile code. Writing execution context related rule-based security policies enables us to be flexible with respect to the restrictions we wish to impose on the mobile code. In our opinion, establishing an authority for certifying the safety of mobile code is too inflexible, since depending on the situation the user might temporarily want to tighten the restrictions. We describe our language for expressing rule-based security policies and show how those policies can be translated into aspects, which together form a run-time security monitor. In practice, we translate our policy expression to AspectJ with our MPLc compiler and only consider embedding a run-time monitor into Java applications. Tomi Karlstedt, Ville Leppänen, Sanna Tuohimaa |
COMPSAC | 2 |
| 2007 | Client based Object-Oriented Cohesion MetricsabstractFor code quality control, there exists tens of object- oriented (OO) metrics on class cohesion and coupling. This abundant variety indicates that designing feasible metrics to differentiate good object-oriented programs from bad ones is not an easy task. Even worse, in practice OO cohesion metrics have a minor role in code reviews. In this paper we argue the proposed cohesion metrics, based on internal usage of class members, yield misleading (bad) values for several reasons. We propose a totally different kind of cohesion metric based on external class usage. Cohesion metrics typically define a bipartite usage graph between methods of a class and its variables. Providing different interpretations for methods, variables, usage relation, and calculation method have served as sources of variation. Classical interpretation is to measure internal usage of instance variables by the instance methods of a class to evaluate relatedness of the class properties. We argue that the relatedness also depends on the usage context, e.g. an application. Another problem is that objects often consist of property sets that are only slightly related internally, since an inheriting class often defines properties that are only slightly related to the inherited ones. Yet, the clients of such objects often make connections between the property sets by simultaneously advancing internally seemingly unrelated property sets. We propose forming cohesion graphs between the clients of a class and its member variables. Our approach complements the internal cohesion view with external views based on the external usage of class properties. We provide results for three popular open-source projects indicating our external cohesion measure to give much more meaningful results. Sami Mäkelä, Ville Leppänen |
COMPSAC (2) | 2 |
| 1998 | Constant Thinning Protocol for Routing h-Relations in Complete Networks
Anssi Kautonen, Ville Leppänen, Martti Penttonen |
Euro-Par | 2 |
| 1997 | Embedding and Emulation Results for Static Multichannel Mesh of Optical Buses
Ville Leppänen |
Euro-Par | 1 |
| 1995 | Performance of Work-Optimal PRAM Simulation Algorithms on Coated MeshesabstractWe study the effect of varying the multithreading level of processors in work-optimal PRAM simulation algorithms on coated meshes. A coated mesh consists of a mesh connected routing machinery and P processor & memory pairs that form a coat on the routing machinery. The algorithms studied are based on greedy routing, sorting, improved virtual leveled network technique, combining queues method, and synchronization wave. Our results show that increasing the multithreading level considerably improves the simulation cost. The cost can be decreased below 5 routing steps per P simulated PRAM processors. In case of one algorithm, even costs 1.1…2 are achieved. Ville Leppänen |
Comput. J. | 1 |