About me

I conduct research to strengthen the security and resilience of the software supply chain.
Using empirical software engineering and data-driven methods, I study how reusable software components are developed, maintained, and integrated.
In particular, my recent work focused on studying the presence of vulnerabilities in these components.

My research interests include:

  • Software supply chain
  • Software security
  • Mining software repositories

Contact me