Gespeichert in:
| Hauptverfasser: | Rahman, Imranur, Paramitha, Ranidya, Plate, Henrik, Wermke, Dominik, Williams, Laurie |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2024
|
| Schlagworte: | |
| Online-Zugang: | https://arxiv.org/abs/2408.02846 |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
How Quickly Do Development Teams Update Their Vulnerable Dependencies?
von: Rahman, Imranur, et al.
Veröffentlicht: (2024)
von: Rahman, Imranur, et al.
Veröffentlicht: (2024)
Beyond Metadata: Code-centric and Usage-based Analysis of Known Vulnerabilities in Open-source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2018)
von: Ponta, Serena E., et al.
Veröffentlicht: (2018)
Impact assessment for vulnerabilities in open-source software libraries
von: Plate, Henrik, et al.
Veröffentlicht: (2015)
von: Plate, Henrik, et al.
Veröffentlicht: (2015)
Generating API Parameter Security Rules with LLM for API Misuse Detection
von: Liu, Jinghua, et al.
Veröffentlicht: (2024)
von: Liu, Jinghua, et al.
Veröffentlicht: (2024)
From Struggle to Simplicity with a Usable and Secure API for Encryption in Java
von: Firouzi, Ehsan, et al.
Veröffentlicht: (2024)
von: Firouzi, Ehsan, et al.
Veröffentlicht: (2024)
Comparing Effectiveness and Efficiency of Interactive Application Security Testing (IAST) and Runtime Application Self-Protection (RASP) Tools in a Large Java-based System
von: Seth, Aishwarya, et al.
Veröffentlicht: (2023)
von: Seth, Aishwarya, et al.
Veröffentlicht: (2023)
S3C2 Summit 2024-09: Industry Secure Software Supply Chain Summit
von: Rahman, Imranur, et al.
Veröffentlicht: (2025)
von: Rahman, Imranur, et al.
Veröffentlicht: (2025)
Toward Automated Security Risk Detection in Large Software Using Call Graph Analysis
von: Pecka, Nicholas, et al.
Veröffentlicht: (2025)
von: Pecka, Nicholas, et al.
Veröffentlicht: (2025)
GraphQLer: Enhancing GraphQL Security with Context-Aware API Testing
von: Tsai, Omar, et al.
Veröffentlicht: (2025)
von: Tsai, Omar, et al.
Veröffentlicht: (2025)
A Manually-Curated Dataset of Fixes to Vulnerabilities of Open-Source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
An Empirical Study of Vulnerable Package Dependencies in LLM Repositories
von: Liu, Shuhan, et al.
Veröffentlicht: (2025)
von: Liu, Shuhan, et al.
Veröffentlicht: (2025)
Securing the Software Package Supply Chain for Critical Systems
von: Murali, Ritwik, et al.
Veröffentlicht: (2025)
von: Murali, Ritwik, et al.
Veröffentlicht: (2025)
R+R: Reassessing Java Security API Misuse in Current LLMs: A Replication on JCA and JSSE APIs with External Security Knowledge
von: Lu, Tianhe, et al.
Veröffentlicht: (2026)
von: Lu, Tianhe, et al.
Veröffentlicht: (2026)
The Popularity Hypothesis in Software Security: A Large-Scale Replication with PHP Packages
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
Mind the Gap: Evaluating LLMs for High-Level Malicious Package Detection vs. Fine-Grained Indicator Identification
von: Ryan, Ahmed, et al.
Veröffentlicht: (2026)
von: Ryan, Ahmed, et al.
Veröffentlicht: (2026)
RiskHarvester: A Risk-based Tool to Prioritize Secret Removal Efforts in Software Artifacts
von: Basak, Setu Kumar, et al.
Veröffentlicht: (2025)
von: Basak, Setu Kumar, et al.
Veröffentlicht: (2025)
Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web
von: Swierzy, Ben, et al.
Veröffentlicht: (2025)
von: Swierzy, Ben, et al.
Veröffentlicht: (2025)
Trusting code in the wild: Exploring contributor reputation measures to review dependencies in the Rust ecosystem
von: Hamer, Sivana, et al.
Veröffentlicht: (2024)
von: Hamer, Sivana, et al.
Veröffentlicht: (2024)
Your ATs to Ts: MITRE ATT&CK Attack Technique to P-SSCRM Task Mapping
von: Hamer, Sivana, et al.
Veröffentlicht: (2025)
von: Hamer, Sivana, et al.
Veröffentlicht: (2025)
Mutation-based Evaluation of Cryptographic API Misuse Detectors
von: Ami, Amit Seal, et al.
Veröffentlicht: (2021)
von: Ami, Amit Seal, et al.
Veröffentlicht: (2021)
Classport: Designing Runtime Dependency Introspection for Java
von: Cofano, Serena, et al.
Veröffentlicht: (2025)
von: Cofano, Serena, et al.
Veröffentlicht: (2025)
Software Supply Chain Smells: Lightweight Analysis for Secure Dependency Management
von: Schmid, Larissa, et al.
Veröffentlicht: (2026)
von: Schmid, Larissa, et al.
Veröffentlicht: (2026)
Closing the Chain: How to reduce your risk of being SolarWinds, Log4j, or XZ Utils
von: Hamer, Sivana, et al.
Veröffentlicht: (2025)
von: Hamer, Sivana, et al.
Veröffentlicht: (2025)
Using AI Assistants in Software Development: A Qualitative Study on Security Practices and Concerns
von: Klemmer, Jan H., et al.
Veröffentlicht: (2024)
von: Klemmer, Jan H., et al.
Veröffentlicht: (2024)
When Specifications Meet Reality: Uncovering API Inconsistencies in Ethereum Infrastructure
von: Ma, Jie, et al.
Veröffentlicht: (2026)
von: Ma, Jie, et al.
Veröffentlicht: (2026)
Assumptions to Evidence: Evaluating Security Practices Adoption and Their Impact on Outcomes in the npm Ecosystem
von: Zahan, Nusrat, et al.
Veröffentlicht: (2025)
von: Zahan, Nusrat, et al.
Veröffentlicht: (2025)
AssetHarvester: A Static Analysis Tool for Detecting Secret-Asset Pairs in Software Artifacts
von: Basak, Setu Kumar, et al.
Veröffentlicht: (2024)
von: Basak, Setu Kumar, et al.
Veröffentlicht: (2024)
Enhancing REST API Fuzzing with Access Policy Violation Checks and Injection Attacks
von: Sahin, Omur, et al.
Veröffentlicht: (2026)
von: Sahin, Omur, et al.
Veröffentlicht: (2026)
ConfuGuard: Using Metadata to Detect Active and Stealthy Package Confusion Attacks Accurately and at Scale
von: Jiang, Wenxin, et al.
Veröffentlicht: (2025)
von: Jiang, Wenxin, et al.
Veröffentlicht: (2025)
Just another copy and paste? Comparing the security vulnerabilities of ChatGPT generated code and StackOverflow answers
von: Hamer, Sivana, et al.
Veröffentlicht: (2024)
von: Hamer, Sivana, et al.
Veröffentlicht: (2024)
BacAlarm: Mining and Simulating Composite API Traffic to Prevent Broken Access Control Violations
von: Yang, Yanjing, et al.
Veröffentlicht: (2025)
von: Yang, Yanjing, et al.
Veröffentlicht: (2025)
Does the Vulnerability Threaten Our Projects? Automated Vulnerable API Detection for Third-Party Libraries
von: Zhang, Fangyuan, et al.
Veröffentlicht: (2024)
von: Zhang, Fangyuan, et al.
Veröffentlicht: (2024)
Can I Check What I Designed? Mapping Security Design DSLs to Code Analyzers
von: Peldszus, Sven, et al.
Veröffentlicht: (2026)
von: Peldszus, Sven, et al.
Veröffentlicht: (2026)
Profile of Vulnerability Remediations in Dependencies Using Graph Analysis
von: Vera, Fernando, et al.
Veröffentlicht: (2024)
von: Vera, Fernando, et al.
Veröffentlicht: (2024)
SAVANT: Vulnerability Detection in Application Dependencies through Semantic-Guided Reachability Analysis
von: Lingxiang, Wang, et al.
Veröffentlicht: (2025)
von: Lingxiang, Wang, et al.
Veröffentlicht: (2025)
A Static Analysis of Popular C Packages in Linux
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
An Analysis of Malicious Packages in Open-Source Software in the Wild
von: Zhou, Xiaoyan, et al.
Veröffentlicht: (2024)
von: Zhou, Xiaoyan, et al.
Veröffentlicht: (2024)
Broken Quantum: A Systematic Formal Verification Study of Security Vulnerabilities Across the Open-Source Quantum Computing Simulator Ecosystem
von: Blain, Dominik
Veröffentlicht: (2026)
von: Blain, Dominik
Veröffentlicht: (2026)
SAGA: Detecting Security Vulnerabilities Using Static Aspect Analysis
von: Marquer, Yoann, et al.
Veröffentlicht: (2026)
von: Marquer, Yoann, et al.
Veröffentlicht: (2026)
Using LLMs for Security Advisory Investigations: How Far Are We?
von: Abdullah, Bayu Fedra, et al.
Veröffentlicht: (2025)
von: Abdullah, Bayu Fedra, et al.
Veröffentlicht: (2025)
Ähnliche Einträge
-
How Quickly Do Development Teams Update Their Vulnerable Dependencies?
von: Rahman, Imranur, et al.
Veröffentlicht: (2024) -
Beyond Metadata: Code-centric and Usage-based Analysis of Known Vulnerabilities in Open-source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2018) -
Impact assessment for vulnerabilities in open-source software libraries
von: Plate, Henrik, et al.
Veröffentlicht: (2015) -
Generating API Parameter Security Rules with LLM for API Misuse Detection
von: Liu, Jinghua, et al.
Veröffentlicht: (2024) -
From Struggle to Simplicity with a Usable and Secure API for Encryption in Java
von: Firouzi, Ehsan, et al.
Veröffentlicht: (2024)