Drop the Golden Apples: Identifying Third-Party Reuse by DB-Less Software Composition Analysis
Fuente:
arXiv
Saved in:
| Main Authors: | Zhang, Lyuye, Liu, Chengwei, Wu, Jiahui, Zhang, Shiyang, Liu, Chengyue, Xu, Zhengzi, Chen, Sen, Liu, Yang |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
JC-Finder: Detecting Java Clone-based Third-Party Library by Class-level Tree Analysis
by: Zhao, Lida, et al.
Published: (2025)
by: Zhao, Lida, et al.
Published: (2025)
VFArchē: A Dual-Mode Framework for Locating Vulnerable Functions in Open-Source Software
by: Zhang, Lyuye, et al.
Published: (2025)
by: Zhang, Lyuye, et al.
Published: (2025)
Empirical Analysis of Vulnerabilities Life Cycle in Golang Ecosystem
by: Hu, Jinchang, et al.
Published: (2023)
by: Hu, Jinchang, et al.
Published: (2023)
IntelliRadar: A Comprehensive Platform to Pinpoint Malicious Package Information from Cyber Intelligence
by: Guo, Wenbo, et al.
Published: (2024)
by: Guo, Wenbo, et al.
Published: (2024)
Understanding NPM Malicious Package Detection: A Benchmark-Driven Empirical Analysis
by: Guo, Wenbo, et al.
Published: (2026)
by: Guo, Wenbo, et al.
Published: (2026)
Fixing Outside the Box: Uncovering Tactics for Open-Source Security Issue Management
by: Zhang, Lyuye, et al.
Published: (2025)
by: Zhang, Lyuye, et al.
Published: (2025)
Uncovering and Mitigating the Impact of Frozen Package Versions for Fixed-Release Linux
by: Tang, Wei, et al.
Published: (2024)
by: Tang, Wei, et al.
Published: (2024)
Detecting Essence Code Clones via Information Theoretic Analysis
by: Zhao, Lida, et al.
Published: (2025)
by: Zhao, Lida, et al.
Published: (2025)
Cutting the Gordian Knot: Detecting Malicious PyPI Packages via a Knowledge-Mining Framework
by: Guo, Wenbo, et al.
Published: (2026)
by: Guo, Wenbo, et al.
Published: (2026)
Doctor: Optimizing Container Rebuild Efficiency by Instruction Re-Orchestration
by: Zhu, Zhiling, et al.
Published: (2025)
by: Zhu, Zhiling, et al.
Published: (2025)
Enhancing Security in Third-Party Library Reuse -- Comprehensive Detection of 1-day Vulnerability through Code Patch Analysis
by: Xu, Shangzhi, et al.
Published: (2024)
by: Xu, Shangzhi, et al.
Published: (2024)
SkillClone: Multi-Modal Clone Detection and Clone Propagation Analysis in the Agent Skill Ecosystem
by: Zhu, Jiaying, et al.
Published: (2026)
by: Zhu, Jiaying, et al.
Published: (2026)
Evolaris: A Roadmap to Self-Evolving Software Intelligence Management
by: Liu, Chengwei, et al.
Published: (2025)
by: Liu, Chengwei, et al.
Published: (2025)
A Survey of Third-Party Library Security Research in Application Software
by: Zeng, Jia, et al.
Published: (2024)
by: Zeng, Jia, et al.
Published: (2024)
A Systematic Study on Generating Web Vulnerability Proof-of-Concepts Using Large Language Models
by: Zhao, Mengyao, et al.
Published: (2025)
by: Zhao, Mengyao, et al.
Published: (2025)
Does the Vulnerability Threaten Our Projects? Automated Vulnerable API Detection for Third-Party Libraries
by: Zhang, Fangyuan, et al.
Published: (2024)
by: Zhang, Fangyuan, et al.
Published: (2024)
Real-World Usability of Vulnerability Proof-of-Concepts: A Comprehensive Study
by: Dang, Wenjing, et al.
Published: (2025)
by: Dang, Wenjing, et al.
Published: (2025)
Bridging Expert Reasoning and LLM Detection: A Knowledge-Driven Framework for Malicious Packages
by: Guo, Wenbo, et al.
Published: (2026)
by: Guo, Wenbo, et al.
Published: (2026)
Investigating Code Reuse in Software Redesign: A Case Study
by: Zhang, Xiaowen, et al.
Published: (2026)
by: Zhang, Xiaowen, et al.
Published: (2026)
BinaryAI: Binary Software Composition Analysis via Intelligent Binary Source Code Matching
by: Jiang, Ling, et al.
Published: (2024)
by: Jiang, Ling, et al.
Published: (2024)
Open Source, Hidden Costs: A Systematic Literature Review on OSS License Management
by: Li, Boyuan, et al.
Published: (2025)
by: Li, Boyuan, et al.
Published: (2025)
Apples, Oranges, and Software Engineering: Study Selection Challenges for Secondary Research on Latent Variables
by: Wyrich, Marvin, et al.
Published: (2024)
by: Wyrich, Marvin, et al.
Published: (2024)
A^3-CodGen: A Repository-Level Code Generation Framework for Code Reuse with Local-Aware, Global-Aware, and Third-Party-Library-Aware
by: Liao, Dianshu, et al.
Published: (2023)
by: Liao, Dianshu, et al.
Published: (2023)
Preserving Privacy in Software Composition Analysis: A Study of Technical Solutions and Enhancements
by: Wang, Huaijin, et al.
Published: (2024)
by: Wang, Huaijin, et al.
Published: (2024)
BinCoFer: Three-Stage Purification for Effective C/C++ Binary Third-Party Library Detection
by: Zou, Yayi, et al.
Published: (2025)
by: Zou, Yayi, et al.
Published: (2025)
LLMs Meet Library Evolution: Evaluating Deprecated API Usage in LLM-based Code Completion
by: Wang, Chong, et al.
Published: (2024)
by: Wang, Chong, et al.
Published: (2024)
Copy-and-Paste? Identifying EVM-Inequivalent Code Smells in Multi-chain Reuse Contracts
by: Wang, Zexu, et al.
Published: (2025)
by: Wang, Zexu, et al.
Published: (2025)
Tracking GPTs Third Party Service: Automation, Analysis, and Insights
by: Yan, Chuan, et al.
Published: (2025)
by: Yan, Chuan, et al.
Published: (2025)
On the Future of Software Reuse in the Era of AI Native Software Engineering
by: Taivalsaari, Antero, et al.
Published: (2025)
by: Taivalsaari, Antero, et al.
Published: (2025)
ACFIX: Guiding LLMs with Mined Common RBAC Practices for Context-Aware Repair of Access Control Vulnerabilities in Smart Contracts
by: Zhang, Lyuye, et al.
Published: (2024)
by: Zhang, Lyuye, et al.
Published: (2024)
Assessing Privacy Compliance of Android Third-Party SDKs
by: Meng, Mark Huasong, et al.
Published: (2024)
by: Meng, Mark Huasong, et al.
Published: (2024)
Minimizing Breaking Changes and Redundancy in Mitigating Technical Lag for Java Projects
by: Lu, Rui, et al.
Published: (2025)
by: Lu, Rui, et al.
Published: (2025)
Catch the Butterfly: Peeking into the Terms and Conflicts among SPDX Licenses
by: Liu, Tao, et al.
Published: (2024)
by: Liu, Tao, et al.
Published: (2024)
Vulnerability-Triggering Test Case Generation from Third-Party Libraries
by: Gao, Yi, et al.
Published: (2024)
by: Gao, Yi, et al.
Published: (2024)
Addressing Popularity Bias in Third-Party Library Recommendations Using LLMs
by: Di Sipio, Claudio, et al.
Published: (2025)
by: Di Sipio, Claudio, et al.
Published: (2025)
Version-level Third-Party Library Detection in Android Applications via Class Structural Similarity
by: Zhou, Bolin, et al.
Published: (2025)
by: Zhou, Bolin, et al.
Published: (2025)
Studying the Role of Reusing Crowdsourcing Knowledge in Software Development
by: Abdalkareem, Rabe
Published: (2025)
by: Abdalkareem, Rabe
Published: (2025)
Dataset: Copy-based Reuse in Open Source Software
by: Jahanshahi, Mahmoud, et al.
Published: (2023)
by: Jahanshahi, Mahmoud, et al.
Published: (2023)
ModuleGuard:Understanding and Detecting Module Conflicts in Python Ecosystem
by: Zhu, Ruofan, et al.
Published: (2024)
by: Zhu, Ruofan, et al.
Published: (2024)
Enhancing Function Name Prediction using Votes-Based Name Tokenization and Multi-Task Learning
by: Zhang, Xiaoling, et al.
Published: (2024)
by: Zhang, Xiaoling, et al.
Published: (2024)
Similar Items
-
JC-Finder: Detecting Java Clone-based Third-Party Library by Class-level Tree Analysis
by: Zhao, Lida, et al.
Published: (2025) -
VFArchē: A Dual-Mode Framework for Locating Vulnerable Functions in Open-Source Software
by: Zhang, Lyuye, et al.
Published: (2025) -
Empirical Analysis of Vulnerabilities Life Cycle in Golang Ecosystem
by: Hu, Jinchang, et al.
Published: (2023) -
IntelliRadar: A Comprehensive Platform to Pinpoint Malicious Package Information from Cyber Intelligence
by: Guo, Wenbo, et al.
Published: (2024) -
Understanding NPM Malicious Package Detection: A Benchmark-Driven Empirical Analysis
by: Guo, Wenbo, et al.
Published: (2026)