The Secret Life of CVEs
Fuente:
arXiv
Saved in:
| Main Authors: | Przymus, Piotr, Fejzer, Mikołaj, Narębski, Jakub, Stencel, Krzysztof |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Out of Sight, Still at Risk: The Lifecycle of Transitive Vulnerabilities in Maven
by: Przymus, Piotr, et al.
Published: (2025)
by: Przymus, Piotr, et al.
Published: (2025)
How I Learned to Stop Worrying and Love ChatGPT
by: Przymus, Piotr, et al.
Published: (2025)
by: Przymus, Piotr, et al.
Published: (2025)
HaPy-Bug -- Human Annotated Python Bug Resolution Dataset
by: Przymus, Piotr, et al.
Published: (2025)
by: Przymus, Piotr, et al.
Published: (2025)
Linux Kernel Recency Matters, CVE Severity Doesn't, and History Fades
by: Przymus, Piotr, et al.
Published: (2026)
by: Przymus, Piotr, et al.
Published: (2026)
Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack
by: Przymus, Piotr, et al.
Published: (2025)
by: Przymus, Piotr, et al.
Published: (2025)
Evaluating Large Language Models in detecting Secrets in Android Apps
by: Alecci, Marco, et al.
Published: (2025)
by: Alecci, Marco, et al.
Published: (2025)
Decoding Secret Memorization in Code LLMs Through Token-Level Characterization
by: Nie, Yuqing, et al.
Published: (2024)
by: Nie, Yuqing, et al.
Published: (2024)
Automatically Detecting Checked-In Secrets in Android Apps: How Far Are We?
by: Li, Kevin, et al.
Published: (2024)
by: Li, Kevin, et al.
Published: (2024)
How Far are App Secrets from Being Stolen? A Case Study on Android
by: Wei, Lili, et al.
Published: (2025)
by: Wei, Lili, et al.
Published: (2025)
Establishing Workload Identity for Zero Trust CI/CD: From Secrets to SPIFFE-Based Authentication
by: Avirneni, Surya Teja
Published: (2025)
by: Avirneni, Surya Teja
Published: (2025)
RiskHarvester: A Risk-based Tool to Prioritize Secret Removal Efforts in Software Artifacts
by: Basak, Setu Kumar, et al.
Published: (2025)
by: Basak, Setu Kumar, et al.
Published: (2025)
IssueGuard: Real-Time Secret Leak Prevention Tool for GitHub Issue Reports
by: Rahman, Md Nafiu, et al.
Published: (2026)
by: Rahman, Md Nafiu, et al.
Published: (2026)
AssetHarvester: A Static Analysis Tool for Detecting Secret-Asset Pairs in Software Artifacts
by: Basak, Setu Kumar, et al.
Published: (2024)
by: Basak, Setu Kumar, et al.
Published: (2024)
A Static Analysis of Popular C Packages in Linux
by: Ruohonen, Jukka, et al.
Published: (2024)
by: Ruohonen, Jukka, et al.
Published: (2024)
Protect Your Secrets: Understanding and Measuring Data Exposure in VSCode Extensions
by: Liu, Yue, et al.
Published: (2024)
by: Liu, Yue, et al.
Published: (2024)
The Secrets Must Not Flow: Scaling Security Verification to Large Codebases (extended version)
by: Arquint, Linard, et al.
Published: (2025)
by: Arquint, Linard, et al.
Published: (2025)
Separating Secrets from Placeholders: A Hybrid CNN-CodeBERT Framework for Three-Class Credential Leakage Detection
by: Baby, Maksuda Bilkis, et al.
Published: (2026)
by: Baby, Maksuda Bilkis, et al.
Published: (2026)
Risks and Compliance with the EU's Core Cyber Security Legislation
by: Ruohonen, Jukka, et al.
Published: (2025)
by: Ruohonen, Jukka, et al.
Published: (2025)
KEENHash: Hashing Programs into Function-Aware Embeddings for Large-Scale Binary Code Similarity Analysis
by: Liu, Zhijie, et al.
Published: (2025)
by: Liu, Zhijie, et al.
Published: (2025)
QUIC-Fuzz: An Effective Greybox Fuzzer For The QUIC Protocol
by: Ang, Kian Kai, et al.
Published: (2025)
by: Ang, Kian Kai, et al.
Published: (2025)
In the Magma chamber: Update and challenges in ground-truth vulnerabilities revival for automatic input generator comparison
by: Riom, Timothée, et al.
Published: (2025)
by: Riom, Timothée, et al.
Published: (2025)
Identity Control Plane: The Unifying Layer for Zero Trust Infrastructure
by: Avirneni, Surya Teja
Published: (2025)
by: Avirneni, Surya Teja
Published: (2025)
Sleeping Giants -- Activating Dormant Java Deserialization Gadget Chains through Stealthy Code Changes
by: Kreyssig, Bruno, et al.
Published: (2025)
by: Kreyssig, Bruno, et al.
Published: (2025)
Provenance of Adaptation in Scientific and Business Workflows -- Literature Review
by: Stage, Ludwig, et al.
Published: (2025)
by: Stage, Ludwig, et al.
Published: (2025)
DeCoMa: Detecting and Purifying Code Dataset Watermarks through Dual Channel Code Abstraction
by: Xiao, Yuan, et al.
Published: (2025)
by: Xiao, Yuan, et al.
Published: (2025)
TELSAFE: Security Gap Quantitative Risk Assessment Framework
by: Siddiqui, Sarah Ali, et al.
Published: (2025)
by: Siddiqui, Sarah Ali, et al.
Published: (2025)
SafeToolBench: Pioneering a Prospective Benchmark to Evaluating Tool Utilization Safety in LLMs
by: Xia, Hongfei, et al.
Published: (2025)
by: Xia, Hongfei, et al.
Published: (2025)
A Holistic Approach to E-Commerce Innovation: Redefining Security and User Experience
by: Akash, Mohammad Olid Ali, et al.
Published: (2025)
by: Akash, Mohammad Olid Ali, et al.
Published: (2025)
Evaluating Software Supply Chain Security in Research Software
by: Hegewald, Richard, et al.
Published: (2025)
by: Hegewald, Richard, et al.
Published: (2025)
Smart Cuts: Enhance Active Learning for Vulnerability Detection by Pruning Hard-to-Learn Data
by: Lan, Xiang, et al.
Published: (2025)
by: Lan, Xiang, et al.
Published: (2025)
Certifying optimal MEV strategies with Lean
by: Bartoletti, Massimo, et al.
Published: (2025)
by: Bartoletti, Massimo, et al.
Published: (2025)
PrediQL: Automated Testing of GraphQL APIs with LLMs
by: Liu, Shaolun, et al.
Published: (2025)
by: Liu, Shaolun, et al.
Published: (2025)
Towards Context-aware Mobile Privacy Notice: Implementation of A Deployable Contextual Privacy Policies Generator
by: Gong, Haochen, et al.
Published: (2025)
by: Gong, Haochen, et al.
Published: (2025)
A Taxonomy of Functional Security Features and How They Can Be Located
by: Hermann, Kevin, et al.
Published: (2025)
by: Hermann, Kevin, et al.
Published: (2025)
LLMs as Firmware Experts: A Runtime-Grown Tree-of-Agents Framework
by: Zhang, Xiangrui, et al.
Published: (2025)
by: Zhang, Xiangrui, et al.
Published: (2025)
UniBOM -- A Unified SBOM Analysis and Visualisation Tool for IoT Systems and Beyond
by: Safronov, Vadim, et al.
Published: (2025)
by: Safronov, Vadim, et al.
Published: (2025)
An Empirical Study on the Security Vulnerabilities of GPTs
by: Wu, Tong, et al.
Published: (2025)
by: Wu, Tong, et al.
Published: (2025)
SandCell: Sandboxing Rust Beyond Unsafe Code
by: Zhang, Jialun, et al.
Published: (2025)
by: Zhang, Jialun, et al.
Published: (2025)
FuzzBox: Blending Fuzzing into Emulation for Binary-Only Embedded Targets
by: Cesarano, Carmine, et al.
Published: (2025)
by: Cesarano, Carmine, et al.
Published: (2025)
SafeTrans: LLM-assisted Transpilation from C to Rust
by: Farrukh, Muhammad, et al.
Published: (2025)
by: Farrukh, Muhammad, et al.
Published: (2025)
Similar Items
-
Out of Sight, Still at Risk: The Lifecycle of Transitive Vulnerabilities in Maven
by: Przymus, Piotr, et al.
Published: (2025) -
How I Learned to Stop Worrying and Love ChatGPT
by: Przymus, Piotr, et al.
Published: (2025) -
HaPy-Bug -- Human Annotated Python Bug Resolution Dataset
by: Przymus, Piotr, et al.
Published: (2025) -
Linux Kernel Recency Matters, CVE Severity Doesn't, and History Fades
by: Przymus, Piotr, et al.
Published: (2026) -
Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack
by: Przymus, Piotr, et al.
Published: (2025)