Salvato in:
| Autori principali: | Cesarano, Carmine, Andersson, Vivi, Natella, Roberto, Monperrus, Martin |
|---|---|
| Natura: | Preprint |
| Pubblicazione: |
2024
|
| Soggetti: | |
| Accesso online: | https://arxiv.org/abs/2407.04442 |
| Tags: |
Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
|
Documenti analoghi
GoLeash: Mitigating Golang Software Supply Chain Attacks with Runtime Policy Enforcement
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
KubeFence: Security Hardening of the Kubernetes Attack Surface
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
Evaluating Cryptographic API Misuse Detectors for Go
di: Andersson, Vivi, et al.
Pubblicazione: (2026)
di: Andersson, Vivi, et al.
Pubblicazione: (2026)
Securing an Application Layer Gateway: An Industrial Case Study
di: Cesarano, Carmine, et al.
Pubblicazione: (2024)
di: Cesarano, Carmine, et al.
Pubblicazione: (2024)
FuzzBox: Blending Fuzzing into Emulation for Binary-Only Embedded Targets
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
Software Supply Chain Security of Web3
di: Monperrus, Martin
Pubblicazione: (2025)
di: Monperrus, Martin
Pubblicazione: (2025)
Security-by-Design at the Telco Edge with OSS: Challenges and Lessons Learned
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)
Maven-Hijack: Software Supply Chain Attack Exploiting Packaging Order
di: Reyes, Frank, et al.
Pubblicazione: (2024)
di: Reyes, Frank, et al.
Pubblicazione: (2024)
Security Assessment and Hardening of Fog Computing Systems
di: Cesarano, Carmine
Pubblicazione: (2023)
di: Cesarano, Carmine
Pubblicazione: (2023)
PoCo: Agentic Proof-of-Concept Exploit Generation for Smart Contracts
di: Andersson, Vivi, et al.
Pubblicazione: (2025)
di: Andersson, Vivi, et al.
Pubblicazione: (2025)
The Grand Software Supply Chain of AI Systems
di: Cesarano, Carmine, et al.
Pubblicazione: (2026)
di: Cesarano, Carmine, et al.
Pubblicazione: (2026)
Dirty-Waters: Detecting Software Supply Chain Smells
di: Liu, Raphina, et al.
Pubblicazione: (2024)
di: Liu, Raphina, et al.
Pubblicazione: (2024)
Software Supply Chain Smells: Lightweight Analysis for Secure Dependency Management
di: Schmid, Larissa, et al.
Pubblicazione: (2026)
di: Schmid, Larissa, et al.
Pubblicazione: (2026)
Towards Assessing Isolation Properties in Partitioning Hypervisors
di: Cesarano, Carmine, et al.
Pubblicazione: (2022)
di: Cesarano, Carmine, et al.
Pubblicazione: (2022)
Finding Software Supply Chain Attack Paths with Logical Attack Graphs
di: Soeiro, Luıs, et al.
Pubblicazione: (2025)
di: Soeiro, Luıs, et al.
Pubblicazione: (2025)
Verifiable Provenance of Software Artifacts with Zero-Knowledge Compilation
di: Ron, Javier, et al.
Pubblicazione: (2026)
di: Ron, Javier, et al.
Pubblicazione: (2026)
Vulnerabilities in AI Code Generators: Exploring Targeted Data Poisoning Attacks
di: Cotroneo, Domenico, et al.
Pubblicazione: (2023)
di: Cotroneo, Domenico, et al.
Pubblicazione: (2023)
SynthChain: A Synthetic Benchmark and Forensic Analysis of Advanced and Stealthy Software Supply Chain Attacks
di: Tan, Zhuoran, et al.
Pubblicazione: (2026)
di: Tan, Zhuoran, et al.
Pubblicazione: (2026)
Elevating Cyber Threat Intelligence against Disinformation Campaigns with LLM-based Concept Extraction and the FakeCTI Dataset
di: Cotroneo, Domenico, et al.
Pubblicazione: (2025)
di: Cotroneo, Domenico, et al.
Pubblicazione: (2025)
On-Chain Analysis of Smart Contract Dependency Risks on Ethereum
di: Jin, Monica, et al.
Pubblicazione: (2025)
di: Jin, Monica, et al.
Pubblicazione: (2025)
The Power of Words: Generating PowerShell Attacks from Natural Language
di: Liguori, Pietro, et al.
Pubblicazione: (2024)
di: Liguori, Pietro, et al.
Pubblicazione: (2024)
Enhancing Software Supply Chain Resilience: Strategy For Mitigating Software Supply Chain Security Risks And Ensuring Security Continuity In Development Lifecycle
di: Akinsola, Ahmed, et al.
Pubblicazione: (2024)
di: Akinsola, Ahmed, et al.
Pubblicazione: (2024)
SOK: A Taxonomy of Attack Vectors and Defense Strategies for Agentic Supply Chain Runtime
di: Jiang, Xiaochong, et al.
Pubblicazione: (2026)
di: Jiang, Xiaochong, et al.
Pubblicazione: (2026)
SBOM.EXE: Countering Dynamic Code Injection based on Software Bill of Materials in Java
di: Sharma, Aman, et al.
Pubblicazione: (2024)
di: Sharma, Aman, et al.
Pubblicazione: (2024)
That Doesn't Go There: Attacks on Shared State in Multi-User Augmented Reality Applications
di: Slocum, Carter, et al.
Pubblicazione: (2023)
di: Slocum, Carter, et al.
Pubblicazione: (2023)
Security Vulnerabilities in Software Supply Chain for Autonomous Vehicles
di: Haque, Md Wasiul, et al.
Pubblicazione: (2025)
di: Haque, Md Wasiul, et al.
Pubblicazione: (2025)
Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack
di: Przymus, Piotr, et al.
Pubblicazione: (2025)
di: Przymus, Piotr, et al.
Pubblicazione: (2025)
Evaluating Software Supply Chain Security in Research Software
di: Hegewald, Richard, et al.
Pubblicazione: (2025)
di: Hegewald, Richard, et al.
Pubblicazione: (2025)
Towards Predicting Multi-Vulnerability Attack Chains in Software Supply Chains from Software Bill of Materials Graphs
di: Baird, Laura, et al.
Pubblicazione: (2026)
di: Baird, Laura, et al.
Pubblicazione: (2026)
Establishing a Baseline of Software Supply Chain Security Task Adoption by Software Organizations
di: Williams, Laurie, et al.
Pubblicazione: (2025)
di: Williams, Laurie, et al.
Pubblicazione: (2025)
Towards Robust Detection of Open Source Software Supply Chain Poisoning Attacks in Industry Environments
di: Zheng, Xinyi, et al.
Pubblicazione: (2024)
di: Zheng, Xinyi, et al.
Pubblicazione: (2024)
Operationalizing Research Software for Supply Chain Security
di: Kalu, Kelechi G., et al.
Pubblicazione: (2026)
di: Kalu, Kelechi G., et al.
Pubblicazione: (2026)
Lexo: Eliminating Stealthy Supply-Chain Attacks via LLM-Assisted Program Regeneration
di: Lamprou, Evangelos, et al.
Pubblicazione: (2025)
di: Lamprou, Evangelos, et al.
Pubblicazione: (2025)
GoAT-X: A Graph of Auditing Thoughts for Securing Token Transactions in Cross-Chain Contracts
di: Feng, Zijun, et al.
Pubblicazione: (2026)
di: Feng, Zijun, et al.
Pubblicazione: (2026)
PyPitfall: Dependency Chaos and Software Supply Chain Vulnerabilities in Python
di: Mahon, Jacob, et al.
Pubblicazione: (2025)
di: Mahon, Jacob, et al.
Pubblicazione: (2025)
QUT-DV25: A Dataset for Dynamic Analysis of Next-Gen Software Supply Chain Attacks
di: Mehedi, Sk Tanzir, et al.
Pubblicazione: (2025)
di: Mehedi, Sk Tanzir, et al.
Pubblicazione: (2025)
Securing the Software Package Supply Chain for Critical Systems
di: Murali, Ritwik, et al.
Pubblicazione: (2025)
di: Murali, Ritwik, et al.
Pubblicazione: (2025)
SoK: A Defense-Oriented Evaluation of Software Supply Chain Security
di: Ishgair, Eman Abu, et al.
Pubblicazione: (2024)
di: Ishgair, Eman Abu, et al.
Pubblicazione: (2024)
SpyChain: Multi-Vector Supply Chain Attacks on Small Satellite Systems
di: Vanlyssel, Jack, et al.
Pubblicazione: (2025)
di: Vanlyssel, Jack, et al.
Pubblicazione: (2025)
Your Agent Is Mine: Measuring Malicious Intermediary Attacks on the LLM Supply Chain
di: Liu, Hanzhi, et al.
Pubblicazione: (2026)
di: Liu, Hanzhi, et al.
Pubblicazione: (2026)
Documenti analoghi
-
GoLeash: Mitigating Golang Software Supply Chain Attacks with Runtime Policy Enforcement
di: Cesarano, Carmine, et al.
Pubblicazione: (2025) -
KubeFence: Security Hardening of the Kubernetes Attack Surface
di: Cesarano, Carmine, et al.
Pubblicazione: (2025) -
Evaluating Cryptographic API Misuse Detectors for Go
di: Andersson, Vivi, et al.
Pubblicazione: (2026) -
Securing an Application Layer Gateway: An Industrial Case Study
di: Cesarano, Carmine, et al.
Pubblicazione: (2024) -
FuzzBox: Blending Fuzzing into Emulation for Binary-Only Embedded Targets
di: Cesarano, Carmine, et al.
Pubblicazione: (2025)