Dirk Riehle's Industry and Research Publications

Category: 2.3 Open Source (Building)

  • Open-source software governance: A case study evaluation of supply-chain management best practices [HICSS 2023]

    Open-source software governance: A case study evaluation of supply-chain management best practices [HICSS 2023]

    Abstract: Corporate open source governance aims to manage the increasing use of free/libre and open source software (FLOSS) in companies. To avoid the risks of the ungoverned use, companies need to establish processes addressing license compliance, component approval, and supply chain management (SCM). We proposed a set of industry-inspired best practices for supply chain management…

  • Challenges to open collaborative data engineering [HICSS 2023]

    Challenges to open collaborative data engineering [HICSS 2023]

    Abstract: Open data is data that can be used, modified, and passed on, for free, similar to open-source software. Unlike open-source, however, there is little collaboration in open data engineering. We perform a systematic literature review of collaboration systems in open data, specifically for data engineering by users, taking place after data has been made…

  • Who to blame for the log4j vulnerability?

    Who to blame for the log4j vulnerability?

    So far, nobody. Not the open source developers, who responded fast and professionally, and not the companies who handled the risk within a day or two. Eventually, however, we will have to blame (or complain) about those companies who got cracked because they did not remove the vulnerability in time. Now, why would a company…