Forecasting the risk of software choices: A model to foretell security vulnerabilities from library dependencies and source code evolution
Fuente:
arXiv
Saved in:
| Main Authors: | Budde, Carlos E., Paramitha, Ranindya, Massacci, Fabio |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Cross-ecosystem categorization: A manual-curation protocol for the categorization of Java Maven libraries along Python PyPI Topics
by: Paramitha, Ranindya, et al.
Published: (2024)
by: Paramitha, Ranindya, et al.
Published: (2024)
Vulnerability anti-patterns in Solidity: Increasing smart contracts security by reducing false alarms
by: Oss, Tommaso, et al.
Published: (2024)
by: Oss, Tommaso, et al.
Published: (2024)
Augmenting software engineering with AI and developing it further towards AI-assisted model-driven software engineering
by: Schieferdecker, Ina K.
Published: (2024)
by: Schieferdecker, Ina K.
Published: (2024)
How Quickly Do Development Teams Update Their Vulnerable Dependencies?
by: Rahman, Imranur, et al.
Published: (2024)
by: Rahman, Imranur, et al.
Published: (2024)
FuzzDistill: Intelligent Fuzzing Target Selection using Compile-Time Analysis and Machine Learning
by: Upadhyay, Saket
Published: (2024)
by: Upadhyay, Saket
Published: (2024)
Automating the Detection of Code Vulnerabilities by Analyzing GitHub Issues
by: Cipollone, Daniele, et al.
Published: (2025)
by: Cipollone, Daniele, et al.
Published: (2025)
Today's Cat Is Tomorrow's Dog: Accounting for Time-Based Changes in the Labels of ML Vulnerability Detection Approaches
by: Paramitha, Ranindya, et al.
Published: (2025)
by: Paramitha, Ranindya, et al.
Published: (2025)
Impact assessment for vulnerabilities in open-source software libraries
by: Plate, Henrik, et al.
Published: (2015)
by: Plate, Henrik, et al.
Published: (2015)
Implementing AI Bill of Materials (AI BOM) with SPDX 3.0: A Comprehensive Guide to Creating AI and Dataset Bill of Materials
by: Bennet, Karen, et al.
Published: (2025)
by: Bennet, Karen, et al.
Published: (2025)
Repairing vulnerabilities without invisible hands. A differentiated replication study on LLMs
by: Camporese, Maria, et al.
Published: (2025)
by: Camporese, Maria, et al.
Published: (2025)
Using ML filters to help automated vulnerability repairs: when it helps and when it doesn't
by: Camporese, Maria, et al.
Published: (2025)
by: Camporese, Maria, et al.
Published: (2025)
Incidents During Microservice Decomposition: A Case Study
by: Eldenk, Doğaç, et al.
Published: (2025)
by: Eldenk, Doğaç, et al.
Published: (2025)
A Never-Ending Story: Revisiting Requirements Major Misunderstandings
by: Leite, Julio Cesar
Published: (2025)
by: Leite, Julio Cesar
Published: (2025)
Towards an Incident Management Framework in Proprietary Software Ecosystems
by: Costa, L. A., et al.
Published: (2024)
by: Costa, L. A., et al.
Published: (2024)
Understanding the Effectiveness of LLMs in Automated Self-Admitted Technical Debt Repayment
by: Sheikhaei, Mohammad Sadegh, et al.
Published: (2025)
by: Sheikhaei, Mohammad Sadegh, et al.
Published: (2025)
Detecção de Conflitos Semânticos com Testes Gerados por LLM
by: Barbosa, Nathalia, et al.
Published: (2025)
by: Barbosa, Nathalia, et al.
Published: (2025)
Generating Highly Structured Test Inputs Leveraging Constraint-Guided Graph Refinement
by: Yang, Zhaorui, et al.
Published: (2025)
by: Yang, Zhaorui, et al.
Published: (2025)
Small is Beautiful: A Practical and Efficient Log Parsing Framework
by: Wang, Minxing, et al.
Published: (2026)
by: Wang, Minxing, et al.
Published: (2026)
TrajAudit: Automated Failure Diagnosis for Agentic Coding Systems
by: Wang, Minxing, et al.
Published: (2026)
by: Wang, Minxing, et al.
Published: (2026)
EpiDroid: Dependency-Guided Recomposition for Deep State Discovery in Mobile GUI Testing
by: Song, Jiahui, et al.
Published: (2026)
by: Song, Jiahui, et al.
Published: (2026)
Poisoning Learned Index Structures: Static and Dynamic Adversarial Attacks on ALEX
by: Jue, Allen
Published: (2026)
by: Jue, Allen
Published: (2026)
Optimisation of cyber insurance coverage with selection of cost effective security controls
by: Uuganbayar, Ganbayar, et al.
Published: (2025)
by: Uuganbayar, Ganbayar, et al.
Published: (2025)
Integrating DAST in Kanban and CI/CD: A Real World Security Case Study
by: Thool, Arpit, et al.
Published: (2025)
by: Thool, Arpit, et al.
Published: (2025)
Risks of ignoring uncertainty propagation in AI-augmented security pipelines
by: Mezzi, Emanuele, et al.
Published: (2024)
by: Mezzi, Emanuele, et al.
Published: (2024)
TraceLLM: Security Diagnosis Through Traces and Smart Contracts in Ethereum
by: Wang, Shuzheng, et al.
Published: (2025)
by: Wang, Shuzheng, et al.
Published: (2025)
Proxion: Uncovering Hidden Proxy Smart Contracts for Finding Collision Vulnerabilities in Ethereum
by: Chen, Cheng-Kang, et al.
Published: (2024)
by: Chen, Cheng-Kang, et al.
Published: (2024)
RSMM: A Framework to Assess Maturity of Research Software Project
by: Deekshitha, et al.
Published: (2024)
by: Deekshitha, et al.
Published: (2024)
Structural and Connectivity Patterns in the Maven Central Software Dependency Network
by: Ogenrwot, Daniel, et al.
Published: (2025)
by: Ogenrwot, Daniel, et al.
Published: (2025)
Design and Evaluation of a Scalable Data Pipeline for AI-Driven Air Quality Monitoring in Low-Resource Settings
by: Sserujongi, Richard, et al.
Published: (2025)
by: Sserujongi, Richard, et al.
Published: (2025)
IXAII: An Interactive Explainable Artificial Intelligence Interface for Decision Support Systems
by: Speckmann, Pauline, et al.
Published: (2025)
by: Speckmann, Pauline, et al.
Published: (2025)
FAIRSECO: An Extensible Framework for Impact Measurement of Research Software
by: Deekshitha, et al.
Published: (2024)
by: Deekshitha, et al.
Published: (2024)
Coding With AI: From a Reflection on Industrial Practices to Future Computer Science and Software Engineering Education
by: Chang, Hung-Fu, et al.
Published: (2025)
by: Chang, Hung-Fu, et al.
Published: (2025)
Docker-based CI/CD for Rocq/OCaml projects
by: Martin-Dorel, Érik
Published: (2025)
by: Martin-Dorel, Érik
Published: (2025)
PatchTrack: A Comprehensive Analysis of ChatGPT's Influence on Pull Request Outcomes
by: Ogenrwot, Daniel, et al.
Published: (2025)
by: Ogenrwot, Daniel, et al.
Published: (2025)
Invisible Labor in Open Source Software Ecosystems
by: Meluso, John, et al.
Published: (2024)
by: Meluso, John, et al.
Published: (2024)
Empirical Investigation of the Relationship Between Design Smells and Role Stereotypes
by: Ogenrwot, Daniel, et al.
Published: (2024)
by: Ogenrwot, Daniel, et al.
Published: (2024)
AI Observability for Developer Productivity Tools: Bridging Cost Awareness and Code Quality
by: Bhati, Happy, et al.
Published: (2026)
by: Bhati, Happy, et al.
Published: (2026)
Empowering Agile-Based Generative Software Development through Human-AI Teamwork
by: Zhang, Sai, et al.
Published: (2024)
by: Zhang, Sai, et al.
Published: (2024)
Refactoring-Aware Patch Integration Across Structurally Divergent Java Forks
by: Ogenrwot, Daniel, et al.
Published: (2025)
by: Ogenrwot, Daniel, et al.
Published: (2025)
Automated Detection of Algorithm Debt in Deep Learning Frameworks: An Empirical Study
by: Simon, Emmanuel Iko-Ojo, et al.
Published: (2024)
by: Simon, Emmanuel Iko-Ojo, et al.
Published: (2024)
Similar Items
-
Cross-ecosystem categorization: A manual-curation protocol for the categorization of Java Maven libraries along Python PyPI Topics
by: Paramitha, Ranindya, et al.
Published: (2024) -
Vulnerability anti-patterns in Solidity: Increasing smart contracts security by reducing false alarms
by: Oss, Tommaso, et al.
Published: (2024) -
Augmenting software engineering with AI and developing it further towards AI-assisted model-driven software engineering
by: Schieferdecker, Ina K.
Published: (2024) -
How Quickly Do Development Teams Update Their Vulnerable Dependencies?
by: Rahman, Imranur, et al.
Published: (2024) -
FuzzDistill: Intelligent Fuzzing Target Selection using Compile-Time Analysis and Machine Learning
by: Upadhyay, Saket
Published: (2024)