Michael Schlichtig

I am a PhD candidate in Computer Science at Paderborn University, working in the Research Group Secure Software Engineering (SSE) led by Prof. Dr. Eric Bodden at the Heinz Nixdorf Institute.

My research sits at the intersection of program analysis, human-centered software engineering, and AI-assisted secure software — increasingly, software engineering with and for AI. My dissertation, “Helping Java Developers Reduce Cryptographic API Misuses” (submitted June 2026, defense August 31, 2026), spans empirical usability research on static analysis tools, the FUM misuse-classification framework, and LLM-assisted repair of cryptographic API misuses, realized in SecAI — a usability-focused SonarQube plugin that uses large language models to fix security defects rather than merely report them.

Research Interests

  • AI-Assisted Repair of Security Defects (LLMs + Static Analysis)
  • Software Engineering with and for AI-Based Systems
  • Usability of Static Analysis Tools and Developer Tooling
  • Cryptographic API Misuse Detection and Classification
  • Android Privacy and GDPR Compliance Automation

News

  • 06/2026 — Dissertation submitted. Defense scheduled for August 31, 2026.
  • 2026 — Journal article published: Between Law and Code: Challenges and Opportunities for Automating Privacy Assessments. Automated Software Engineering, 33(2):56. (doi)
  • 2026 — Conference paper published: Challenges in Android Data Disclosure: An Empirical Study. MOBILESoft 2026. (doi)
  • 2026 — Workshop paper accepted: FP-Predictor — False Positive Prediction for Static Analysis Reports. STATIC@ICSE 2026.
  • 04–05/2025 — Research visit to Universidade de Brasília (UnB) and Universidade Federal de Pernambuco (UFPE), Brazil. Invited talks: Helping Developers Reduce Misuses of Java APIs (UnB and UFPE).