Bomfather: An eBPF-based Kernel-level Monitoring Framework for Accurate Identification of Unknown, Unused, and Dynamically Loaded Dependencies in Modern Software Supply Chains
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | Srinivasan, Naveen, Naveen, Nathan, Naveen, Neil |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2025
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
SafeBPF: Hardware-assisted Defense-in-depth for eBPF Kernel Extensions
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
eBPF-PATROL: Protective Agent for Threat Recognition and Overreach Limitation using eBPF in Containerized and Virtualized Environments
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025)
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025)
When eBPF Meets Machine Learning: On-the-fly OS Kernel Compartmentalization
von: Wang, Zicheng, et al.
Veröffentlicht: (2024)
von: Wang, Zicheng, et al.
Veröffentlicht: (2024)
pokiSEC: A Multi-Architecture, Containerized Ephemeral Malware Detonation Sandbox
von: Avina, Alejandro, et al.
Veröffentlicht: (2025)
von: Avina, Alejandro, et al.
Veröffentlicht: (2025)
MOAT: Towards Safe BPF Kernel Extension
von: Lu, Hongyi, et al.
Veröffentlicht: (2023)
von: Lu, Hongyi, et al.
Veröffentlicht: (2023)
Improved Leakage Abuse Attacks in Searchable Symmetric Encryption with eBPF Monitoring
von: Dimobi, Chinecherem
Veröffentlicht: (2026)
von: Dimobi, Chinecherem
Veröffentlicht: (2026)
Designing Robust API Monitoring Solutions
von: D'Elia, Daniele Cono, et al.
Veröffentlicht: (2020)
von: D'Elia, Daniele Cono, et al.
Veröffentlicht: (2020)
Yaksha-Prashna: Understanding eBPF Bytecode Network Function Behavior
von: Singh, Animesh, et al.
Veröffentlicht: (2026)
von: Singh, Animesh, et al.
Veröffentlicht: (2026)
Software Supply Chain Smells: Lightweight Analysis for Secure Dependency Management
von: Schmid, Larissa, et al.
Veröffentlicht: (2026)
von: Schmid, Larissa, et al.
Veröffentlicht: (2026)
Testing Access-Control Configuration Changes for Web Applications
von: Xiang, Chengcheng, et al.
Veröffentlicht: (2025)
von: Xiang, Chengcheng, et al.
Veröffentlicht: (2025)
A Survey of Fuzzing Open-Source Operating Systems
von: Hu, Kun, et al.
Veröffentlicht: (2025)
von: Hu, Kun, et al.
Veröffentlicht: (2025)
Threadbox: Sandboxing for Modular Security
von: Alhindi, Maysara, et al.
Veröffentlicht: (2025)
von: Alhindi, Maysara, et al.
Veröffentlicht: (2025)
SyzRetrospector: A Large-Scale Retrospective Study of Syzbot
von: Bursey, Joseph, et al.
Veröffentlicht: (2024)
von: Bursey, Joseph, et al.
Veröffentlicht: (2024)
Evaluating Software Supply Chain Security in Research Software
von: Hegewald, Richard, et al.
Veröffentlicht: (2025)
von: Hegewald, Richard, et al.
Veröffentlicht: (2025)
Operationalizing Research Software for Supply Chain Security
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2026)
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2026)
Software Supply Chain Security of Web3
von: Monperrus, Martin
Veröffentlicht: (2025)
von: Monperrus, Martin
Veröffentlicht: (2025)
AgentSight: System-Level Observability for AI Agents Using eBPF
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
von: Zheng, Yusheng, et al.
Veröffentlicht: (2025)
SoK: Software Compartmentalization
von: Lefeuvre, Hugo, et al.
Veröffentlicht: (2024)
von: Lefeuvre, Hugo, et al.
Veröffentlicht: (2024)
Securing the Software Package Supply Chain for Critical Systems
von: Murali, Ritwik, et al.
Veröffentlicht: (2025)
von: Murali, Ritwik, et al.
Veröffentlicht: (2025)
Dirty-Waters: Detecting Software Supply Chain Smells
von: Liu, Raphina, et al.
Veröffentlicht: (2024)
von: Liu, Raphina, et al.
Veröffentlicht: (2024)
An Industry Interview Study of Software Signing for Supply Chain Security
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2024)
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2024)
Propagation-Based Vulnerability Impact Assessment for Software Supply Chains
von: Ruan, Bonan, et al.
Veröffentlicht: (2025)
von: Ruan, Bonan, et al.
Veröffentlicht: (2025)
Software Bill of Materials in Software Supply Chain Security A Systematic Literature Review
von: O'Donoghue, Eric, et al.
Veröffentlicht: (2025)
von: O'Donoghue, Eric, et al.
Veröffentlicht: (2025)
QUT-DV25: A Dataset for Dynamic Analysis of Next-Gen Software Supply Chain Attacks
von: Mehedi, Sk Tanzir, et al.
Veröffentlicht: (2025)
von: Mehedi, Sk Tanzir, et al.
Veröffentlicht: (2025)
Maven-Hijack: Software Supply Chain Attack Exploiting Packaging Order
von: Reyes, Frank, et al.
Veröffentlicht: (2024)
von: Reyes, Frank, et al.
Veröffentlicht: (2024)
An Empirically Grounded Reference Architecture for Software Supply Chain Metadata Management
von: Tran, Nguyen Khoi, et al.
Veröffentlicht: (2023)
von: Tran, Nguyen Khoi, et al.
Veröffentlicht: (2023)
KNighter: Transforming Static Analysis with LLM-Synthesized Checkers
von: Yang, Chenyuan, et al.
Veröffentlicht: (2025)
von: Yang, Chenyuan, et al.
Veröffentlicht: (2025)
SoK: Analysis of Software Supply Chain Security by Establishing Secure Design Properties
von: Okafor, Chinenye, et al.
Veröffentlicht: (2024)
von: Okafor, Chinenye, et al.
Veröffentlicht: (2024)
GoLeash: Mitigating Golang Software Supply Chain Attacks with Runtime Policy Enforcement
von: Cesarano, Carmine, et al.
Veröffentlicht: (2025)
von: Cesarano, Carmine, et al.
Veröffentlicht: (2025)
Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack
von: Przymus, Piotr, et al.
Veröffentlicht: (2025)
von: Przymus, Piotr, et al.
Veröffentlicht: (2025)
Towards Robust Detection of Open Source Software Supply Chain Poisoning Attacks in Industry Environments
von: Zheng, Xinyi, et al.
Veröffentlicht: (2024)
von: Zheng, Xinyi, et al.
Veröffentlicht: (2024)
ARMS: A Vision for Actor Reputation Metric Systems in the Open-Source Software Supply Chain
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2025)
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2025)
OmniBOR: A System for Automatic, Verifiable Artifact Resolution across Software Supply Chains
von: Seshadri, Bharathi, et al.
Veröffentlicht: (2024)
von: Seshadri, Bharathi, et al.
Veröffentlicht: (2024)
Securing Monolithic Kernels using Compartmentalization
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024)
BULKHEAD: Secure, Scalable, and Efficient Kernel Compartmentalization with PKS
von: Guo, Yinggang, et al.
Veröffentlicht: (2024)
von: Guo, Yinggang, et al.
Veröffentlicht: (2024)
Towards Predicting Multi-Vulnerability Attack Chains in Software Supply Chains from Software Bill of Materials Graphs
von: Baird, Laura, et al.
Veröffentlicht: (2026)
von: Baird, Laura, et al.
Veröffentlicht: (2026)
SyzParam: Introducing Runtime Parameters into Kernel Driver Fuzzing
von: Sun, Yue, et al.
Veröffentlicht: (2025)
von: Sun, Yue, et al.
Veröffentlicht: (2025)
Pinning Is Futile: You Need More Than Local Dependency Versioning to Defend against Supply Chain Attacks
von: He, Hao, et al.
Veröffentlicht: (2025)
von: He, Hao, et al.
Veröffentlicht: (2025)
Safe Sharing of Fast Kernel-Bypass I/O Among Nontrusting Applications
von: Beadle, Alan, et al.
Veröffentlicht: (2025)
von: Beadle, Alan, et al.
Veröffentlicht: (2025)
Concurrency Testing in the Linux Kernel via eBPF
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
von: Xu, Jiacheng, et al.
Veröffentlicht: (2025)
Ähnliche Einträge
-
SafeBPF: Hardware-assisted Defense-in-depth for eBPF Kernel Extensions
von: Lim, Soo Yee, et al.
Veröffentlicht: (2024) -
eBPF-PATROL: Protective Agent for Threat Recognition and Overreach Limitation using eBPF in Containerized and Virtualized Environments
von: Ghimire, Sangam, et al.
Veröffentlicht: (2025) -
When eBPF Meets Machine Learning: On-the-fly OS Kernel Compartmentalization
von: Wang, Zicheng, et al.
Veröffentlicht: (2024) -
pokiSEC: A Multi-Architecture, Containerized Ephemeral Malware Detonation Sandbox
von: Avina, Alejandro, et al.
Veröffentlicht: (2025) -
MOAT: Towards Safe BPF Kernel Extension
von: Lu, Hongyi, et al.
Veröffentlicht: (2023)