Supply Chain Insecurity: The Lack of Integrity Protection in SBOM Solutions
Fuente:
arXiv
Saved in:
| Main Authors: | Ozkan, Can, Zou, Xinhai, Singelee, Dave |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Resolving the Correct Library: A Loader-Level Defense Solution Against Shared Object Hijacking
by: Ozkan, Can, et al.
Published: (2026)
by: Ozkan, Can, et al.
Published: (2026)
Evidence-Based Threat Modeling for ICS
by: Ozkan, Can, et al.
Published: (2024)
by: Ozkan, Can, et al.
Published: (2024)
CovFUZZ: Coverage-based fuzzer for 4G&5G protocols
by: Siroš, Ilja, et al.
Published: (2024)
by: Siroš, Ilja, et al.
Published: (2024)
SBOMproof: Beyond Alleged SBOM Compliance for Supply Chain Security of Container Images
by: Bufalino, Jacopo, et al.
Published: (2025)
by: Bufalino, Jacopo, et al.
Published: (2025)
Secure Wi-Fi Ranging Today: Security and Adoption of IEEE 802.11az/bk
by: Antonijević, Nikola, et al.
Published: (2026)
by: Antonijević, Nikola, et al.
Published: (2026)
ThreadFuzzer: Fuzzing Framework for Thread Protocol
by: Siroš, Ilja, et al.
Published: (2025)
by: Siroš, Ilja, et al.
Published: (2025)
Supply Chain Insecurity: Exposing Vulnerabilities in iOS Dependency Management Systems
by: Schmidt, David, et al.
Published: (2026)
by: Schmidt, David, et al.
Published: (2026)
Trustworthy and Confidential SBOM Exchange
by: Ishgair, Eman Abu, et al.
Published: (2025)
by: Ishgair, Eman Abu, et al.
Published: (2025)
Out-of-Band Power Side-Channel Detection for Semiconductor Supply Chain Integrity at Scale
by: Thummala, Rajiv, et al.
Published: (2026)
by: Thummala, Rajiv, et al.
Published: (2026)
zkSBOM: Privacy-Preserving SBOM Sharing with Zero-Knowledge Sets
by: Sorger, Tom, et al.
Published: (2026)
by: Sorger, Tom, et al.
Published: (2026)
VeriSBOM: Secure and Verifiable SBOM Sharing Via Zero-Knowledge Proofs
by: Castiglione, Gianpietro, et al.
Published: (2026)
by: Castiglione, Gianpietro, et al.
Published: (2026)
A Practical Solution to Systematically Monitor Inconsistencies in SBOM-based Vulnerability Scanners
by: Rosso, Martin, et al.
Published: (2025)
by: Rosso, Martin, et al.
Published: (2025)
What Gets Measured Gets Managed: Mitigating Supply Chain Attacks with a Link Integrity Management System
by: So, Johnny, et al.
Published: (2025)
by: So, Johnny, et al.
Published: (2025)
Chain Table: Protecting Table-Level Data Integrity by Digital Ledger Technology
by: Yu, Feng, et al.
Published: (2025)
by: Yu, Feng, et al.
Published: (2025)
SPOQchain: Platform for Secure, Scalable, and Privacy-Preserving Supply Chain Tracing and Counterfeit Protection
by: Finke, Moritz, et al.
Published: (2024)
by: Finke, Moritz, et al.
Published: (2024)
SoK: Understanding Vulnerabilities in the Large Language Model Supply Chain
by: Wang, Shenao, et al.
Published: (2025)
by: Wang, Shenao, et al.
Published: (2025)
The Impact of SBOM Generators on Vulnerability Assessment in Python: A Comparison and a Novel Approach
by: Benedetti, Giacomo, et al.
Published: (2024)
by: Benedetti, Giacomo, et al.
Published: (2024)
Automating SBOM Generation with Zero-Shot Semantic Similarity
by: Pereira, Devin, et al.
Published: (2024)
by: Pereira, Devin, et al.
Published: (2024)
SBOM Generation Tools in the Python Ecosystem: an In-Detail Analysis
by: Cofano, Serena, et al.
Published: (2024)
by: Cofano, Serena, et al.
Published: (2024)
WAIT: Protecting the Integrity of Web Applications with Binary-Equivalent Transparency
by: Meißner, Echo, et al.
Published: (2021)
by: Meißner, Echo, et al.
Published: (2021)
A Reality Check on SBOM-based Vulnerability Management: An Empirical Study and A Path Forward
by: Zhou, Li, et al.
Published: (2025)
by: Zhou, Li, et al.
Published: (2025)
Cyberattack Detection in Critical Infrastructure and Supply Chains
by: Khapre, Smita
Published: (2025)
by: Khapre, Smita
Published: (2025)
Enhancing Software Supply Chain Resilience: Strategy For Mitigating Software Supply Chain Security Risks And Ensuring Security Continuity In Development Lifecycle
by: Akinsola, Ahmed, et al.
Published: (2024)
by: Akinsola, Ahmed, et al.
Published: (2024)
Security Vulnerabilities in Software Supply Chain for Autonomous Vehicles
by: Haque, Md Wasiul, et al.
Published: (2025)
by: Haque, Md Wasiul, et al.
Published: (2025)
SynthChain: A Synthetic Benchmark and Forensic Analysis of Advanced and Stealthy Software Supply Chain Attacks
by: Tan, Zhuoran, et al.
Published: (2026)
by: Tan, Zhuoran, et al.
Published: (2026)
SBOM.EXE: Countering Dynamic Code Injection based on Software Bill of Materials in Java
by: Sharma, Aman, et al.
Published: (2024)
by: Sharma, Aman, et al.
Published: (2024)
UniBOM -- A Unified SBOM Analysis and Visualisation Tool for IoT Systems and Beyond
by: Safronov, Vadim, et al.
Published: (2025)
by: Safronov, Vadim, et al.
Published: (2025)
VDGraph: A Graph-Theoretic Approach to Unlock Insights from SBOM and SCA Data
by: Xia, Howell, et al.
Published: (2025)
by: Xia, Howell, et al.
Published: (2025)
Semi-Supervised Learning for Anomaly Detection in Blockchain-based Supply Chains
by: Son, Do Hai, et al.
Published: (2024)
by: Son, Do Hai, et al.
Published: (2024)
GoSurf: Identifying Software Supply Chain Attack Vectors in Go
by: Cesarano, Carmine, et al.
Published: (2024)
by: Cesarano, Carmine, et al.
Published: (2024)
PyPitfall: Dependency Chaos and Software Supply Chain Vulnerabilities in Python
by: Mahon, Jacob, et al.
Published: (2025)
by: Mahon, Jacob, et al.
Published: (2025)
Operational Runtime Behavior Mining for Open-Source Supply Chain Security
by: Tan, Zhuoran, et al.
Published: (2026)
by: Tan, Zhuoran, et al.
Published: (2026)
Finding Software Supply Chain Attack Paths with Logical Attack Graphs
by: Soeiro, Luıs, et al.
Published: (2025)
by: Soeiro, Luıs, et al.
Published: (2025)
Supporting Students in Navigating LLM-Generated Insecure Code
by: Park, Jaehwan, et al.
Published: (2025)
by: Park, Jaehwan, et al.
Published: (2025)
SoK: A Defense-Oriented Evaluation of Software Supply Chain Security
by: Ishgair, Eman Abu, et al.
Published: (2024)
by: Ishgair, Eman Abu, et al.
Published: (2024)
Reward-based Blockchain Infrastructure for 3D IC Supply Chain Provenance
by: Valapu, Sulyab Thottungal, et al.
Published: (2024)
by: Valapu, Sulyab Thottungal, et al.
Published: (2024)
Your Agent Is Mine: Measuring Malicious Intermediary Attacks on the LLM Supply Chain
by: Liu, Hanzhi, et al.
Published: (2026)
by: Liu, Hanzhi, et al.
Published: (2026)
Insecurity Through Obscurity: Veiled Vulnerabilities in Closed-Source Contracts
by: Yang, Sen, et al.
Published: (2025)
by: Yang, Sen, et al.
Published: (2025)
S3C2 Summit 2024-03: Industry Secure Supply Chain Summit
by: Tystahl, Greg, et al.
Published: (2024)
by: Tystahl, Greg, et al.
Published: (2024)
S3C2 Summit 2023-11: Industry Secure Supply Chain Summit
by: Zahan, Nusrat, et al.
Published: (2024)
by: Zahan, Nusrat, et al.
Published: (2024)
Similar Items
-
Resolving the Correct Library: A Loader-Level Defense Solution Against Shared Object Hijacking
by: Ozkan, Can, et al.
Published: (2026) -
Evidence-Based Threat Modeling for ICS
by: Ozkan, Can, et al.
Published: (2024) -
CovFUZZ: Coverage-based fuzzer for 4G&5G protocols
by: Siroš, Ilja, et al.
Published: (2024) -
SBOMproof: Beyond Alleged SBOM Compliance for Supply Chain Security of Container Images
by: Bufalino, Jacopo, et al.
Published: (2025) -
Secure Wi-Fi Ranging Today: Security and Adoption of IEEE 802.11az/bk
by: Antonijević, Nikola, et al.
Published: (2026)