EASE 2026
Tue 9 - Fri 12 June 2026 Glasgow, United Kingdom
Wed 10 Jun 2026 12:10 - 12:25 at JMS 745 - Maintenance and Evolution 2 Chair(s): Andrea Capiluppi

Filenames are a concise means of conveying information about source code to fellow developers. One such convention is util. Commonly understood to stand for “utility”, filenames with the letters util are often an indication that the file contains code that may be broadly useful or reusable. Some projects use this convention heavily, for example, the Apache Tomcat server contains 925 files with util in the path name, which is 17.9% of all source code files in the tree. While the intent of the name may be to prevent duplicate code and reduce workload, what actually happens to util code over time? Do projects move away from util code as they mature? Are util files being used by fellow colleagues, or maintained and used by their author? The goal of our work is to help developers avoid creating unsafe and unused util files when developing their projects. We conducted a longitudinal mining study of the Git repositories of seven open source projects that have a long development history (Linux kernel, Django, FFmpeg, httpd, Struts, systemd, Tomcat). We analyzed how util usage, complexity, developer collaboration, and security are potentially correlated within these projects. Our longitudinal analysis was measured at 30-day intervals throughout the entire history of each project, resulting in 1773 snapshots over 147 project-years of development. We conducted rename tracking at every 30-day snapshot to examine util files over their entire lifetime in a codebase. For example, we found that a util file can be as much as 2.75 times more likely to be involved in a vulnerability than non-util files. While every project can adopt their own naming conventions, the ubiquity and longevity of util files shows a broader developer intent that is useful for understanding the socio-technical nature of software development.

Wed 10 Jun

Displayed time zone: London change

11:00 - 12:30
Maintenance and Evolution 2Journal First / Research Papers / Industry Papers / Reproducibility and Negative Results at JMS 745
Chair(s): Andrea Capiluppi University of Groningen
11:00
15m
Talk
Toward a Prioritization Approach for Third-Party Software Library Updates
Journal First
Abdalrahman Aburakhia King Fahd University of Petroleum and Minerals, Mohammad Alshayeb King Fahd University of Petroleum & Minerals
11:15
15m
Talk
Many hands make light work: An LLM-based multi-agent system for detecting malicious PyPI packages
Journal First
Muhammad Umar Zeshan University of L’Aquila, Italy, Motunrayo Osatohanmen Ibiyo University of L'Aquila, Claudio Di Sipio University of L'Aquila, Phuong T. Nguyen University of L’Aquila, Davide Di Ruscio University of L'Aquila
11:30
15m
Paper
FLOPs vs Real Work: The Importance of Replication in AI Efficiency Assessment
Reproducibility and Negative Results
Enrique Barba Roque Delft University of Technology, Luís Cruz TU Delft
Pre-print
11:45
15m
Talk
An Empirical Evaluation of Code Smell Detection in Angular Applications
Research Papers
Maykon Nunes Universidade Federal do Ceará, Ivan Machado Federal University of Bahia (UFBA), Carla Ilane Bezerra Federal University of Ceara, Emanuel Coutinho Federal University of Ceará
Pre-print
12:00
10m
Talk
Empirical Evaluation of Lift-and-Shift for Decoupling Drivers in Industrial Legacy Software: Lessons from a CGI Case StudyBest Paper Award - Industry Track
Industry Papers
Bauke van den Berg CGI Netherlands, Andrea Capiluppi University of Groningen
12:10
15m
Talk
Unsafe and Unused? A History of Utility Code in Mature Open Source Projects
Research Papers
Brandon Keller Rochester Institute of Technology, Kaitlin Yandik Rochester Institute of Technology, Angela Ngo Rochester Institute of Technology, Andy Meneely Rochester Institute of Technology
Pre-print