Analyzing Challenges in Deployment of the SLSA Framework for Software Supply Chain Security
Fuente:
arXiv
Saved in:
| Main Authors: | Tamanna, Mahzabin, Hamer, Sivana, Tran, Mindy, Fahl, Sascha, Acar, Yasemin, Williams, Laurie |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Trusting code in the wild: Exploring contributor reputation measures to review dependencies in the Rust ecosystem
by: Hamer, Sivana, et al.
Published: (2024)
by: Hamer, Sivana, et al.
Published: (2024)
Just another copy and paste? Comparing the security vulnerabilities of ChatGPT generated code and StackOverflow answers
by: Hamer, Sivana, et al.
Published: (2024)
by: Hamer, Sivana, et al.
Published: (2024)
Your Build Scripts Stink: The State of Code Smells in Build Scripts
by: Tamanna, Mahzabin, et al.
Published: (2025)
by: Tamanna, Mahzabin, et al.
Published: (2025)
Continuous Analysis: Evolution of Software Engineering and Reproducibility for Science
by: Malladi, Venkat S., et al.
Published: (2024)
by: Malladi, Venkat S., et al.
Published: (2024)
Beyond Single Reports: Evaluating Automated ATT&CK Technique Extraction in Multi-Report Campaign Settings
by: Haque, Md Nazmul, et al.
Published: (2026)
by: Haque, Md Nazmul, et al.
Published: (2026)
Scientific Open-Source Software Is Less Likely to Become Abandoned Than One Might Think! Lessons from Curating a Catalog of Maintained Scientific Software
by: Thakur, Addi Malviya, et al.
Published: (2025)
by: Thakur, Addi Malviya, et al.
Published: (2025)
Workday's Approach to Secure and Compliant Cloud ERP Systems
by: Sharma, Monu
Published: (2025)
by: Sharma, Monu
Published: (2025)
Security Implications of User Non-compliance Behavior to Software Updates: A Risk Assessment Study
by: Tamanna, Mahzabin, et al.
Published: (2024)
by: Tamanna, Mahzabin, et al.
Published: (2024)
Closing the Chain: How to reduce your risk of being SolarWinds, Log4j, or XZ Utils
by: Hamer, Sivana, et al.
Published: (2025)
by: Hamer, Sivana, et al.
Published: (2025)
Your ATs to Ts: MITRE ATT&CK Attack Technique to P-SSCRM Task Mapping
by: Hamer, Sivana, et al.
Published: (2025)
by: Hamer, Sivana, et al.
Published: (2025)
What Are Adversaries Doing? Automating Tactics, Techniques, and Procedures Extraction: A Systematic Review
by: Tamanna, Mahzabin, et al.
Published: (2026)
by: Tamanna, Mahzabin, et al.
Published: (2026)
A Generalizable Framework for Building Executable Domain-Specific LLMs under Data Scarcity: Demonstration on Semiconductor TCAD Simulation
by: Wang, Di, et al.
Published: (2026)
by: Wang, Di, et al.
Published: (2026)
UMAT4COMSOL: An Abaqus user material (UMAT) subroutine wrapper for COMSOL
by: Lucarini, S., et al.
Published: (2024)
by: Lucarini, S., et al.
Published: (2024)
Evolution analysis of software quality metrics in an open-source java project: A case study on TestNG
by: Sambaturu, Venkata Sai Sravya
Published: (2025)
by: Sambaturu, Venkata Sai Sravya
Published: (2025)
Containing the Reproducibility Gap: Automated Repository-Level Containerization for Scholarly Jupyter Notebooks
by: Samuel, Sheeba, et al.
Published: (2026)
by: Samuel, Sheeba, et al.
Published: (2026)
VDMN: A Graphical Notation for Modelling Value Driver Trees
by: Matthies, Benjamin
Published: (2025)
by: Matthies, Benjamin
Published: (2025)
Blockchain-Based Trust and Transparency in Airline Reservation Systems using Microservices Architecture
by: Barua, Biman, et al.
Published: (2024)
by: Barua, Biman, et al.
Published: (2024)
Agentic AI in Product Management: A Co-Evolutionary Model
by: Parikh, Nishant A.
Published: (2025)
by: Parikh, Nishant A.
Published: (2025)
Toward a Mapping of Capability and Skill Models using Asset Administration Shells and Ontologies
by: da Silva, Luis Miguel Vieira, et al.
Published: (2023)
by: da Silva, Luis Miguel Vieira, et al.
Published: (2023)
LEO: An Open-Source Platform for Linking OMERO with Lab Notebooks and Heterogeneous Metadata Sources
by: Guerrero, Rodrigo Escobar Díaz, et al.
Published: (2025)
by: Guerrero, Rodrigo Escobar Díaz, et al.
Published: (2025)
Benchmarking formalisms for dynamic structure system Modeling and Simulation
by: Attia, Aya, et al.
Published: (2024)
by: Attia, Aya, et al.
Published: (2024)
Weaving the Cosmos: WASM-Powered Interchain Communication for AI Enabled Smart Contracts
by: Karanjai, Rabimba, et al.
Published: (2025)
by: Karanjai, Rabimba, et al.
Published: (2025)
Auditing Reproducibility in Non-Targeted Analysis: 103 LC/GC--HRMS Tools Reveal Temporal Divergence Between Openness and Operability
by: Alsubaie, Sarah, et al.
Published: (2025)
by: Alsubaie, Sarah, et al.
Published: (2025)
DevServOps: DevOps For Product-Oriented Product-Service Systems
by: Dakkak, Anas, et al.
Published: (2023)
by: Dakkak, Anas, et al.
Published: (2023)
A Comprehensive Survey on Root Cause Analysis in (Micro) Services: Methodologies, Challenges, and Trends
by: Wang, Tingting, et al.
Published: (2024)
by: Wang, Tingting, et al.
Published: (2024)
A Systematic Literature Review of Software Engineering Research on Jupyter Notebook
by: Siddik, Md Saeed, et al.
Published: (2025)
by: Siddik, Md Saeed, et al.
Published: (2025)
ChronoLLM: A Framework for Customizing Large Language Model for Digital Twins generalization based on PyChrono
by: Wang, Jingquan, et al.
Published: (2025)
by: Wang, Jingquan, et al.
Published: (2025)
The Rise of AI Teammates in Software Engineering (SE) 3.0: How Autonomous Coding Agents Are Reshaping Software Engineering
by: Li, Hao, et al.
Published: (2025)
by: Li, Hao, et al.
Published: (2025)
Secure Code Generation at Scale with Reflexion
by: Datta, Arup, et al.
Published: (2025)
by: Datta, Arup, et al.
Published: (2025)
Evaluating Software Supply Chain Security in Research Software
by: Hegewald, Richard, et al.
Published: (2025)
by: Hegewald, Richard, et al.
Published: (2025)
A Hybrid Optimization Framework for Spatial Packaging of Interconnected Systems
by: Westerhof, S., et al.
Published: (2026)
by: Westerhof, S., et al.
Published: (2026)
Operationalizing Research Software for Supply Chain Security
by: Kalu, Kelechi G., et al.
Published: (2026)
by: Kalu, Kelechi G., et al.
Published: (2026)
Software Supply Chain Security of Web3
by: Monperrus, Martin
Published: (2025)
by: Monperrus, Martin
Published: (2025)
3D Topological Modeling and Multi-Agent Movement Simulation for Viral Infection Risk Analysis
by: Jabi, Wassim, et al.
Published: (2024)
by: Jabi, Wassim, et al.
Published: (2024)
ToolRosella: Translating Code Repositories into Standardized Tools for Scientific Agents
by: Di, Shimin, et al.
Published: (2026)
by: Di, Shimin, et al.
Published: (2026)
Assertion-Aware Test Code Summarization with Large Language Models
by: Mollah, Anamul Haque, et al.
Published: (2025)
by: Mollah, Anamul Haque, et al.
Published: (2025)
MOOSEnger -- a Domain-Specific AI Agent for the MOOSE Ecosystem
by: Li, Mengnan, et al.
Published: (2026)
by: Li, Mengnan, et al.
Published: (2026)
Automated Test Data Generation for Enterprise Protobuf Systems: A Metaclass-Enhanced Statistical Approach
by: Du, Y.
Published: (2025)
by: Du, Y.
Published: (2025)
Design for a Digital Twin in Clinical Patient Care
by: Nitschke, Anna-Katharina, et al.
Published: (2025)
by: Nitschke, Anna-Katharina, et al.
Published: (2025)
Bridging eResearch Infrastructure and Experimental Materials Science Process in the Quantum Data Hub
by: Gupta, Amarnath, et al.
Published: (2024)
by: Gupta, Amarnath, et al.
Published: (2024)
Similar Items
-
Trusting code in the wild: Exploring contributor reputation measures to review dependencies in the Rust ecosystem
by: Hamer, Sivana, et al.
Published: (2024) -
Just another copy and paste? Comparing the security vulnerabilities of ChatGPT generated code and StackOverflow answers
by: Hamer, Sivana, et al.
Published: (2024) -
Your Build Scripts Stink: The State of Code Smells in Build Scripts
by: Tamanna, Mahzabin, et al.
Published: (2025) -
Continuous Analysis: Evolution of Software Engineering and Reproducibility for Science
by: Malladi, Venkat S., et al.
Published: (2024) -
Beyond Single Reports: Evaluating Automated ATT&CK Technique Extraction in Multi-Report Campaign Settings
by: Haque, Md Nazmul, et al.
Published: (2026)