| 2026 | SANER | A Measurement Study on the Adoption of Pledges and Unveils in the OpenBSD Operating System. | Jukka Ruohonen, Krzysztof Sierszecki, Abhishek Tiwari |
| 2026 | SANER | Empirical Derivations from an Evolving Test Suite. | Jukka Ruohonen, Abhishek Tiwari |
| 2025 | PST | A Static Analysis of Popular C Packages in Linux. | Jukka Ruohonen, Mubashrah Saddiqa, Krzysztof Sierszecki |
| 2025 | RE | Towards Systematic Specification and Verification of Fairness Requirements: A Position Paper. | Qusai Ramadan, Jukka Ruohonen, Abhishek Tiwari, Adam Alami, Zeyd Boukhers |
| 2025 | RE | A Mapping Analysis of Requirements Between the CRA and the GDPR. | Jukka Ruohonen, Kalle Hjerppe, Eun-Young Kang |
| 2025 | RE | An Alignment Between the CRA's Essential Requirements and the ATT&CK | Jukka Ruohonen, Eun-Young Kang, Qusai Ramadan |
| 2025 | REFSQ | The Potential of Citizen Platforms for Requirements Engineering of Large Socio-Technical Software Systems. | Jukka Ruohonen, Kalle Hjerppe |
| 2025 | SANER | An Empirical Study of Vulnerability Handling Times in CPython. | Jukka Ruohonen |
| 2021 | PST | A Large-Scale Security-Oriented Static Analysis of Python Packages in PyPI. | Jukka Ruohonen, Kalle Hjerppe, Kalle Rindell |
| 2020 | CaiSE | Predicting the Amount of GDPR Fines. | Jukka Ruohonen, Kalle Hjerppe |
| 2020 | Networking | Measuring Basic Load-Balancing and Fail-Over Setups for Email Delivery via DNS MX Records. | Jukka Ruohonen |
| 2019 | EASE | A Demand-Side Viewpoint to Software Vulnerabilities in WordPress Plugins. | Jukka Ruohonen |
| 2019 | ISSRE | Empirical Notes on the Interaction Between Continuous Kernel Fuzzing and Development. | Jukka Ruohonen, Kalle Rindell |
| 2019 | RE | The General Data Protection Regulation: Requirements, Architectures, and Constraints. | Kalle Hjerppe, Jukka Ruohonen, Ville Leppnen |
| 2018 | ICSE | Healthy until otherwise proven: some proposals for renewing research of software ecosystem health. | Sami Hyrynsalmi, Jukka Ruohonen, Marko Seppnen |
| 2018 | PST | Crossing Cross-Domain Paths in the Current Web. | Jukka Ruohonen, Joonas Salovaara, Ville Leppnen |
| 2018 | SEC | On the Integrity of Cross-Origin JavaScripts. | Jukka Ruohonen, Joonas Salovaara, Ville Leppnen |
| 2017 | APSEC | How PHP Releases Are Adopted in the Wild? | Jukka Ruohonen, Ville Leppnen |
| 2016 | AICCSA | Exploring the clustering of software vulnerability disclosure notifications across software vendors. | Jukka Ruohonen, Johannes Holvitie, Sami Hyrynsalmi, Ville Leppnen |
| 2016 | CaiSE | Software Vulnerability Life Cycles and the Age of Software Products: An Empirical Assertion with Operating System Products. | Jukka Ruohonen, Sami Hyrynsalmi, Ville Leppnen |
| 2016 | ECSA | Correlating file-based malware graphs against the empirical ground truth of DNS graphs. | Jukka Ruohonen, Sanja Scepanovic, Sami Hyrynsalmi, Igor Mishkovski, Tuomas Aura, Ville Leppnen |
| 2016 | RCIS | Trading exploits online: A preliminary case study. | Jukka Ruohonen, Sami Hyrynsalmi, Ville Leppnen |
| 2015 | ICSE | Exploring the Stability of Software with Time-Series Cross-Sectional Data. | Jukka Ruohonen, Sami Hyrynsalmi, Ville Leppnen |