{"id":"https://openalex.org/W4384009817","doi":"https://doi.org/10.1109/msr59073.2023.00078","title":"Helm Charts for Kubernetes Applications: Evolution, Outdatedness and Security Risks","display_name":"Helm Charts for Kubernetes Applications: Evolution, Outdatedness and Security Risks","publication_year":2023,"publication_date":"2023-05-01","ids":{"openalex":"https://openalex.org/W4384009817","doi":"https://doi.org/10.1109/msr59073.2023.00078"},"language":"en","primary_location":{"id":"doi:10.1109/msr59073.2023.00078","is_oa":false,"landing_page_url":"https://doi.org/10.1109/msr59073.2023.00078","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE/ACM 20th International Conference on Mining Software Repositories (MSR)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5056738223","display_name":"Ahmed Zerouali","orcid":"https://orcid.org/0000-0002-2676-3730"},"institutions":[{"id":"https://openalex.org/I13469542","display_name":"Vrije Universiteit Brussel","ror":"https://ror.org/006e5kg04","country_code":"BE","type":"education","lineage":["https://openalex.org/I13469542"]}],"countries":["BE"],"is_corresponding":true,"raw_author_name":"Ahmed Zerouali","raw_affiliation_strings":["Vrije Universiteit Brussel,Brussels,Belgium","Vrije Universiteit Brussel, Brussels, Belgium"],"affiliations":[{"raw_affiliation_string":"Vrije Universiteit Brussel,Brussels,Belgium","institution_ids":["https://openalex.org/I13469542"]},{"raw_affiliation_string":"Vrije Universiteit Brussel, Brussels, Belgium","institution_ids":["https://openalex.org/I13469542"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084032561","display_name":"Ruben Opdebeeck","orcid":"https://orcid.org/0000-0002-0938-4843"},"institutions":[{"id":"https://openalex.org/I13469542","display_name":"Vrije Universiteit Brussel","ror":"https://ror.org/006e5kg04","country_code":"BE","type":"education","lineage":["https://openalex.org/I13469542"]}],"countries":["BE"],"is_corresponding":false,"raw_author_name":"Ruben Opdebeeck","raw_affiliation_strings":["Vrije Universiteit Brussel,Brussels,Belgium","Vrije Universiteit Brussel, Brussels, Belgium"],"affiliations":[{"raw_affiliation_string":"Vrije Universiteit Brussel,Brussels,Belgium","institution_ids":["https://openalex.org/I13469542"]},{"raw_affiliation_string":"Vrije Universiteit Brussel, Brussels, Belgium","institution_ids":["https://openalex.org/I13469542"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5042827940","display_name":"Coen De Roover","orcid":"https://orcid.org/0000-0002-1710-1268"},"institutions":[{"id":"https://openalex.org/I13469542","display_name":"Vrije Universiteit Brussel","ror":"https://ror.org/006e5kg04","country_code":"BE","type":"education","lineage":["https://openalex.org/I13469542"]}],"countries":["BE"],"is_corresponding":false,"raw_author_name":"Coen De Roover","raw_affiliation_strings":["Vrije Universiteit Brussel,Brussels,Belgium","Vrije Universiteit Brussel, Brussels, Belgium"],"affiliations":[{"raw_affiliation_string":"Vrije Universiteit Brussel,Brussels,Belgium","institution_ids":["https://openalex.org/I13469542"]},{"raw_affiliation_string":"Vrije Universiteit Brussel, Brussels, Belgium","institution_ids":["https://openalex.org/I13469542"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5056738223"],"corresponding_institution_ids":["https://openalex.org/I13469542"],"apc_list":null,"apc_paid":null,"fwci":2.4075,"has_fulltext":false,"cited_by_count":12,"citation_normalized_percentile":{"value":0.89412463,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"523","last_page":"533"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.9976999759674072,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.9976999759674072,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9976000189781189,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9934999942779541,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7679486274719238},{"id":"https://openalex.org/keywords/container","display_name":"Container (type theory)","score":0.6717621088027954},{"id":"https://openalex.org/keywords/artifact","display_name":"Artifact (error)","score":0.644982099533081},{"id":"https://openalex.org/keywords/metadata","display_name":"Metadata","score":0.5842433571815491},{"id":"https://openalex.org/keywords/popularity","display_name":"Popularity","score":0.5808025598526001},{"id":"https://openalex.org/keywords/software-deployment","display_name":"Software deployment","score":0.5403234958648682},{"id":"https://openalex.org/keywords/chart","display_name":"Chart","score":0.5225988030433655},{"id":"https://openalex.org/keywords/software-engineering","display_name":"Software engineering","score":0.4467754364013672},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.41265034675598145},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.29411062598228455},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.1319788694381714}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7679486274719238},{"id":"https://openalex.org/C2781018962","wikidata":"https://www.wikidata.org/wiki/Q5164884","display_name":"Container (type theory)","level":2,"score":0.6717621088027954},{"id":"https://openalex.org/C2779010991","wikidata":"https://www.wikidata.org/wiki/Q2720909","display_name":"Artifact (error)","level":2,"score":0.644982099533081},{"id":"https://openalex.org/C93518851","wikidata":"https://www.wikidata.org/wiki/Q180160","display_name":"Metadata","level":2,"score":0.5842433571815491},{"id":"https://openalex.org/C2780586970","wikidata":"https://www.wikidata.org/wiki/Q1357284","display_name":"Popularity","level":2,"score":0.5808025598526001},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.5403234958648682},{"id":"https://openalex.org/C190812933","wikidata":"https://www.wikidata.org/wiki/Q28923","display_name":"Chart","level":2,"score":0.5225988030433655},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.4467754364013672},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.41265034675598145},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.29411062598228455},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.1319788694381714},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C77805123","wikidata":"https://www.wikidata.org/wiki/Q161272","display_name":"Social psychology","level":1,"score":0.0},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.0},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.0},{"id":"https://openalex.org/C31972630","wikidata":"https://www.wikidata.org/wiki/Q844240","display_name":"Computer vision","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/msr59073.2023.00078","is_oa":false,"landing_page_url":"https://doi.org/10.1109/msr59073.2023.00078","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 IEEE/ACM 20th International Conference on Mining Software Repositories (MSR)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320321730","display_name":"Fonds Wetenschappelijk Onderzoek","ror":"https://ror.org/03qtxy027"},{"id":"https://openalex.org/F4320327336","display_name":"Vlaamse regering","ror":null}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":16,"referenced_works":["https://openalex.org/W2400282174","https://openalex.org/W2548749170","https://openalex.org/W2607296448","https://openalex.org/W2801591443","https://openalex.org/W2903126489","https://openalex.org/W2945486631","https://openalex.org/W3006548806","https://openalex.org/W3094094693","https://openalex.org/W3101141194","https://openalex.org/W3179169340","https://openalex.org/W3194413079","https://openalex.org/W3195172275","https://openalex.org/W3200568639","https://openalex.org/W4229772528","https://openalex.org/W6713166798","https://openalex.org/W6800407210"],"related_works":["https://openalex.org/W2368605798","https://openalex.org/W2518037665","https://openalex.org/W2348524959","https://openalex.org/W2368049389","https://openalex.org/W2170801710","https://openalex.org/W2384861574","https://openalex.org/W2952704802","https://openalex.org/W4294565801","https://openalex.org/W2142306706","https://openalex.org/W4389479984"],"abstract_inverted_index":{"Using":[0],"Kubernetes":[1,46],"for":[2],"the":[3,18,28,83,91,111,120,131,143,172,179,205],"deployment,":[4],"management":[5,21],"and":[6,20,64,89,99,113,122,151,194],"scaling":[7],"of":[8,22,44,93,115,125,142,167,190,196,204],"containerized":[9],"applications":[10],"has":[11],"become":[12],"a":[13,53,69],"common":[14],"practice.":[15],"To":[16],"facilitate":[17],"installation":[19],"these":[23],"applications,":[24],"practitioners":[25],"can":[26,49],"use":[27],"Helm":[29,135],"package":[30],"manager":[31],"to":[32,60,109,160,200],"assemble":[33],"their":[34,94,126],"configuration":[35],"files":[36],"into":[37],"charts.":[38,75,206],"The":[39],"latter":[40],"are":[41,80,145,169,192,198],"reusable":[42],"packages":[43],"pre-configured":[45],"resources":[47],"that":[48,79,130,157,187],"be":[50],"deployed":[51],"as":[52,117,119],"unit.":[54],"In":[55],"this":[56],"paper,":[57],"we":[58,87,103,185],"aim":[59],"support":[61],"chart":[62],"developers":[63],"users":[65],"by":[66],"carrying":[67],"out":[68,105],"comprehensive":[70],"study":[71],"on":[72],"publicly":[73],"available":[74],"For":[76],"9,482":[77],"charts":[78,136,144,158],"distributed":[81],"via":[82],"Artifact":[84],"Hub":[85],"repository,":[86],"mine":[88],"collect":[90],"list":[92],"metadata,":[95],"versions,":[96,163],"dependencies,":[97],"maintainers":[98],"container":[100,180],"images.":[101,127],"Then,":[102],"carry":[104],"an":[106],"empirical":[107],"analysis":[108],"assess":[110],"state":[112],"evolution":[114],"charts,":[116,184],"well":[118],"outdatedness":[121],"security":[123],"risks":[124],"We":[128,154],"found":[129,186],"ecosystem":[132],"forming":[133],"around":[134,165,188],"is":[137],"growing":[138],"fast.":[139],"However,":[140],"most":[141],"not":[146],"official":[147],"with":[148],"no":[149,152],"popularity":[150],"license.":[153],"also":[155],"observed":[156],"tend":[159],"release":[161],"multiple":[162],"but":[164],"half":[166,189],"them":[168,191,197],"still":[170],"in":[171,183],"initial":[173],"development":[174],"phase.":[175],"When":[176],"looking":[177],"at":[178],"images":[181],"used":[182],"outdated":[193],"88.1%":[195],"exposed":[199],"vulnerabilities,":[201],"jeopardizing":[202],"93.7%":[203]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":5},{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
