Trust, but Verify: Evaluating Developer Behavior in Mitigating Security Vulnerabilities in Open-Source Software Projects
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | de Sousa, Janislley Oliveira, de Farias, Bruno Carvalho, Filho, Eddie Batista de Lima, Cordeiro, Lucas Carvalho |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2024
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
Open Source, Open Threats? Investigating Security Challenges in Open-Source Software
von: Akhavani, Seyed Ali, et al.
Veröffentlicht: (2025)
von: Akhavani, Seyed Ali, et al.
Veröffentlicht: (2025)
Detecting Protracted Vulnerabilities in Open Source Projects
von: Sridharkumar, Arjun, et al.
Veröffentlicht: (2026)
von: Sridharkumar, Arjun, et al.
Veröffentlicht: (2026)
Static Security Vulnerability Scanning of Proprietary and Open-Source Software: An Adaptable Process with Variants and Results
von: Cusick, James J.
Veröffentlicht: (2025)
von: Cusick, James J.
Veröffentlicht: (2025)
Investigating Vulnerability Disclosures in Open-Source Software Using Bug Bounty Reports and Security Advisories
von: Ayala, Jessy, et al.
Veröffentlicht: (2025)
von: Ayala, Jessy, et al.
Veröffentlicht: (2025)
A Mixed-Methods Study of Open-Source Software Maintainers On Vulnerability Management and Platform Security Features
von: Ayala, Jessy, et al.
Veröffentlicht: (2024)
von: Ayala, Jessy, et al.
Veröffentlicht: (2024)
SecureFalcon: Are We There Yet in Automated Software Vulnerability Detection with LLMs?
von: Ferrag, Mohamed Amine, et al.
Veröffentlicht: (2023)
von: Ferrag, Mohamed Amine, et al.
Veröffentlicht: (2023)
ESAA-Security: An Event-Sourced, Verifiable Architecture for Agent-Assisted Security Audits of AI-Generated Code
von: Filho, Elzo Brito dos Santos
Veröffentlicht: (2026)
von: Filho, Elzo Brito dos Santos
Veröffentlicht: (2026)
Tracing Vulnerability Propagation Across Open Source Software Ecosystems
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
ARVO: Atlas of Reproducible Vulnerabilities for Open Source Software
von: Mei, Xiang, et al.
Veröffentlicht: (2024)
von: Mei, Xiang, et al.
Veröffentlicht: (2024)
Floating-Point Neural Network Verification at the Software Level
von: Manino, Edoardo, et al.
Veröffentlicht: (2025)
von: Manino, Edoardo, et al.
Veröffentlicht: (2025)
An Investigation of Hardware Security Bug Characteristics in Open-Source Projects
von: Ah-kiow, Joey, et al.
Veröffentlicht: (2024)
von: Ah-kiow, Joey, et al.
Veröffentlicht: (2024)
A Comprehensive Study on the Impact of Vulnerable Dependencies on Open-Source Software
von: Kumar, Shree Hari Bittugondanahalli Indra, et al.
Veröffentlicht: (2025)
von: Kumar, Shree Hari Bittugondanahalli Indra, et al.
Veröffentlicht: (2025)
On Securing the Software Development Lifecycle in IoT RISC-V Trusted Execution Environments
von: Wilde, Annika, et al.
Veröffentlicht: (2026)
von: Wilde, Annika, et al.
Veröffentlicht: (2026)
An Overview of Cyber Security Funding for Open Source Software
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
Operational Runtime Behavior Mining for Open-Source Supply Chain Security
von: Tan, Zhuoran, et al.
Veröffentlicht: (2026)
von: Tan, Zhuoran, et al.
Veröffentlicht: (2026)
A Manually-Curated Dataset of Fixes to Vulnerabilities of Open-Source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
Agentic AI for Autonomous Defense in Software Supply Chain Security: Beyond Provenance to Vulnerability Mitigation
von: Syed, Toqeer Ali, et al.
Veröffentlicht: (2025)
von: Syed, Toqeer Ali, et al.
Veröffentlicht: (2025)
Security Vulnerabilities in Software Supply Chain for Autonomous Vehicles
von: Haque, Md Wasiul, et al.
Veröffentlicht: (2025)
von: Haque, Md Wasiul, et al.
Veröffentlicht: (2025)
Enhancing Software Supply Chain Resilience: Strategy For Mitigating Software Supply Chain Security Risks And Ensuring Security Continuity In Development Lifecycle
von: Akinsola, Ahmed, et al.
Veröffentlicht: (2024)
von: Akinsola, Ahmed, et al.
Veröffentlicht: (2024)
ZTD$_{JAVA}$: Mitigating Software Supply Chain Vulnerabilities via Zero-Trust Dependencies
von: Amusuo, Paschal C., et al.
Veröffentlicht: (2023)
von: Amusuo, Paschal C., et al.
Veröffentlicht: (2023)
Holographic Projection and Cyber Attack Surface: A Physical Analogy for Digital Security
von: Fernandes, Ricardo Queiroz de Araujo, et al.
Veröffentlicht: (2025)
von: Fernandes, Ricardo Queiroz de Araujo, et al.
Veröffentlicht: (2025)
Ambush from All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines
von: Pan, Ziyue, et al.
Veröffentlicht: (2024)
von: Pan, Ziyue, et al.
Veröffentlicht: (2024)
The Elephant in the Room: Software and Hardware Security Vulnerabilities of Portable Sequencing Devices
von: Stillman, Carson, et al.
Veröffentlicht: (2024)
von: Stillman, Carson, et al.
Veröffentlicht: (2024)
An FPGA-Based Open-Source Hardware-Software Framework for Side-Channel Security Research
von: Zoni, Davide, et al.
Veröffentlicht: (2024)
von: Zoni, Davide, et al.
Veröffentlicht: (2024)
Reinforcing Secure Live Migration through Verifiable State Management
von: Vasileaidis, Stefanos, et al.
Veröffentlicht: (2025)
von: Vasileaidis, Stefanos, et al.
Veröffentlicht: (2025)
LLM-Enabled Open-Source Systems in the Wild: An Empirical Study of Vulnerabilities in GitHub Security Advisories
von: Shifat, Fariha Tanjim, et al.
Veröffentlicht: (2026)
von: Shifat, Fariha Tanjim, et al.
Veröffentlicht: (2026)
Securing the Open RAN Infrastructure: Exploring Vulnerabilities in Kubernetes Deployments
von: Klement, Felix, et al.
Veröffentlicht: (2024)
von: Klement, Felix, et al.
Veröffentlicht: (2024)
The Trust Paradox in LLM-Based Multi-Agent Systems: When Collaboration Becomes a Security Vulnerability
von: Xu, Zijie, et al.
Veröffentlicht: (2025)
von: Xu, Zijie, et al.
Veröffentlicht: (2025)
Generating Proof-of-Vulnerability Tests to Help Enhance the Security of Complex Software
von: Kanchi, Shravya, et al.
Veröffentlicht: (2026)
von: Kanchi, Shravya, et al.
Veröffentlicht: (2026)
LLMs in Software Security: A Survey of Vulnerability Detection Techniques and Insights
von: Sheng, Ze, et al.
Veröffentlicht: (2025)
von: Sheng, Ze, et al.
Veröffentlicht: (2025)
An Open-source Implementation and Security Analysis of Triad's TEE Trusted Time Protocol
von: Bettinger, Matthieu, et al.
Veröffentlicht: (2025)
von: Bettinger, Matthieu, et al.
Veröffentlicht: (2025)
Towards Remotely Verifiable Software Integrity in Resource-Constrained IoT Devices
von: Nunes, Ivan De Oliveira, et al.
Veröffentlicht: (2024)
von: Nunes, Ivan De Oliveira, et al.
Veröffentlicht: (2024)
Learning to Locate: GNN-Powered Vulnerability Path Discovery in Open Source Code
von: Atashin, Nima, et al.
Veröffentlicht: (2025)
von: Atashin, Nima, et al.
Veröffentlicht: (2025)
Predicting Likely-Vulnerable Code Changes: Machine Learning-based Vulnerability Protections for Android Open Source Project
von: Yim, Keun Soo
Veröffentlicht: (2024)
von: Yim, Keun Soo
Veröffentlicht: (2024)
TrustMee: Self-Verifying Remote Attestation Evidence
von: Sinaki, Parsa Sadri, et al.
Veröffentlicht: (2026)
von: Sinaki, Parsa Sadri, et al.
Veröffentlicht: (2026)
Practical Secure Aggregation by Combining Cryptography and Trusted Execution Environments
von: de Laage, Romain, et al.
Veröffentlicht: (2025)
von: de Laage, Romain, et al.
Veröffentlicht: (2025)
TruChain: A Multi-Layer Architecture for Trusted, Verifiable, and Immutable Open Banking Data
von: Rahman, Aufa Nasywa, et al.
Veröffentlicht: (2025)
von: Rahman, Aufa Nasywa, et al.
Veröffentlicht: (2025)
Deep Learning Under Siege: Identifying Security Vulnerabilities and Risk Mitigation Strategies
von: Al-Karaki, Jamal, et al.
Veröffentlicht: (2024)
von: Al-Karaki, Jamal, et al.
Veröffentlicht: (2024)
Securing Elliptic Curve Cryptocurrencies against Quantum Vulnerabilities: Resource Estimates and Mitigations
von: Babbush, Ryan, et al.
Veröffentlicht: (2026)
von: Babbush, Ryan, et al.
Veröffentlicht: (2026)
A Systematic Review of Security Vulnerabilities in Smart Home Devices and Mitigation Techniques
von: Alzaylaee, Mohammed K.
Veröffentlicht: (2025)
von: Alzaylaee, Mohammed K.
Veröffentlicht: (2025)
Ähnliche Einträge
-
Open Source, Open Threats? Investigating Security Challenges in Open-Source Software
von: Akhavani, Seyed Ali, et al.
Veröffentlicht: (2025) -
Detecting Protracted Vulnerabilities in Open Source Projects
von: Sridharkumar, Arjun, et al.
Veröffentlicht: (2026) -
Static Security Vulnerability Scanning of Proprietary and Open-Source Software: An Adaptable Process with Variants and Results
von: Cusick, James J.
Veröffentlicht: (2025) -
Investigating Vulnerability Disclosures in Open-Source Software Using Bug Bounty Reports and Security Advisories
von: Ayala, Jessy, et al.
Veröffentlicht: (2025) -
A Mixed-Methods Study of Open-Source Software Maintainers On Vulnerability Management and Platform Security Features
von: Ayala, Jessy, et al.
Veröffentlicht: (2024)