Tracing Vulnerability Propagation Across Open Source Software Ecosystems
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | Ruohonen, Jukka, Ramadan, Qusai |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2025
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
The Popularity Hypothesis in Software Security: A Large-Scale Replication with PHP Packages
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
An Alignment Between the CRA's Essential Requirements and the ATT&CK's Mitigations
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
Vulnerability Patching Across Software Products and Software Components: A Case Study of Red Hat's Product Portfolio
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
An Empirical Study of Vulnerability Handling Times in CPython
von: Ruohonen, Jukka
Veröffentlicht: (2024)
von: Ruohonen, Jukka
Veröffentlicht: (2024)
An Overview of Cyber Security Funding for Open Source Software
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
A Time Series Analysis of Malware Uploads to Programming Language Ecosystems
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
Vulnerability Coordination Under the Cyber Resilience Act
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
SoK: The Design Paradigm of Safe and Secure Defaults
von: Ruohonen, Jukka
Veröffentlicht: (2024)
von: Ruohonen, Jukka
Veröffentlicht: (2024)
Snaps: Bloated and Outdated?
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
A Static Analysis of Popular C Packages in Linux
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)
A Mapping Analysis of Requirements Between the CRA and the GDPR
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
Compliance as Code: A Study of Linux Distributions and Beyond
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2026)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2026)
A Comprehensive Study on the Impact of Vulnerable Dependencies on Open-Source Software
von: Kumar, Shree Hari Bittugondanahalli Indra, et al.
Veröffentlicht: (2025)
von: Kumar, Shree Hari Bittugondanahalli Indra, et al.
Veröffentlicht: (2025)
A Large-scale Fine-grained Analysis of Packages in Open-Source Software Ecosystems
von: Zhou, Xiaoyan, et al.
Veröffentlicht: (2024)
von: Zhou, Xiaoyan, et al.
Veröffentlicht: (2024)
Propagation-Based Vulnerability Impact Assessment for Software Supply Chains
von: Ruan, Bonan, et al.
Veröffentlicht: (2025)
von: Ruan, Bonan, et al.
Veröffentlicht: (2025)
Sandboxing Adoption in Open Source Ecosystems
von: Alhindi, Maysara, et al.
Veröffentlicht: (2024)
von: Alhindi, Maysara, et al.
Veröffentlicht: (2024)
Static Security Vulnerability Scanning of Proprietary and Open-Source Software: An Adaptable Process with Variants and Results
von: Cusick, James J.
Veröffentlicht: (2025)
von: Cusick, James J.
Veröffentlicht: (2025)
Investigating Vulnerability Disclosures in Open-Source Software Using Bug Bounty Reports and Security Advisories
von: Ayala, Jessy, et al.
Veröffentlicht: (2025)
von: Ayala, Jessy, et al.
Veröffentlicht: (2025)
Tracking Down Software Cluster Bombs: A Current State Analysis of the Free/Libre and Open Source Software (FLOSS) Ecosystem
von: Tatschner, Stefan, et al.
Veröffentlicht: (2025)
von: Tatschner, Stefan, et al.
Veröffentlicht: (2025)
A Mixed-Methods Study of Open-Source Software Maintainers On Vulnerability Management and Platform Security Features
von: Ayala, Jessy, et al.
Veröffentlicht: (2024)
von: Ayala, Jessy, et al.
Veröffentlicht: (2024)
A Ground-Truth-Based Evaluation of Vulnerability Detection Across Multiple Ecosystems
von: Mandl, Peter, et al.
Veröffentlicht: (2026)
von: Mandl, Peter, et al.
Veröffentlicht: (2026)
Risks and Compliance with the EU's Core Cyber Security Legislation
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025)
Detecting Protracted Vulnerabilities in Open Source Projects
von: Sridharkumar, Arjun, et al.
Veröffentlicht: (2026)
von: Sridharkumar, Arjun, et al.
Veröffentlicht: (2026)
Broken Quantum: A Systematic Formal Verification Study of Security Vulnerabilities Across the Open-Source Quantum Computing Simulator Ecosystem
von: Blain, Dominik
Veröffentlicht: (2026)
von: Blain, Dominik
Veröffentlicht: (2026)
A Manually-Curated Dataset of Fixes to Vulnerabilities of Open-Source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
An Analysis of Malicious Packages in Open-Source Software in the Wild
von: Zhou, Xiaoyan, et al.
Veröffentlicht: (2024)
von: Zhou, Xiaoyan, et al.
Veröffentlicht: (2024)
Cross-Ecosystem Vulnerability Analysis for Python Applications
von: Alexopoulos, Georgios, et al.
Veröffentlicht: (2026)
von: Alexopoulos, Georgios, et al.
Veröffentlicht: (2026)
Unlocking Reproducibility: Automating re-Build Process for Open-Source Software
von: Hassanshahi, Behnaz, et al.
Veröffentlicht: (2025)
von: Hassanshahi, Behnaz, et al.
Veröffentlicht: (2025)
Beyond Metadata: Code-centric and Usage-based Analysis of Known Vulnerabilities in Open-source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2018)
von: Ponta, Serena E., et al.
Veröffentlicht: (2018)
VERCATION: Precise Vulnerable Open-source Software Version Identification based on Static Analysis and LLM
von: Cheng, Yiran, et al.
Veröffentlicht: (2024)
von: Cheng, Yiran, et al.
Veröffentlicht: (2024)
LLM-Enabled Open-Source Systems in the Wild: An Empirical Study of Vulnerabilities in GitHub Security Advisories
von: Shifat, Fariha Tanjim, et al.
Veröffentlicht: (2026)
von: Shifat, Fariha Tanjim, et al.
Veröffentlicht: (2026)
Game Rewards Vulnerabilities: Software Vulnerability Detection with Zero-Sum Game and Prototype Learning
von: Wen, Xin-Cheng, et al.
Veröffentlicht: (2024)
von: Wen, Xin-Cheng, et al.
Veröffentlicht: (2024)
ARMS: A Vision for Actor Reputation Metric Systems in the Open-Source Software Supply Chain
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2025)
von: Kalu, Kelechi G., et al.
Veröffentlicht: (2025)
Towards Robust Detection of Open Source Software Supply Chain Poisoning Attacks in Industry Environments
von: Zheng, Xinyi, et al.
Veröffentlicht: (2024)
von: Zheng, Xinyi, et al.
Veröffentlicht: (2024)
The Code the World Depends On: A First Look at Technology Makers' Open Source Software Dependencies
von: Patrick, Cadence, et al.
Veröffentlicht: (2024)
von: Patrick, Cadence, et al.
Veröffentlicht: (2024)
TREBLE: Fast Software Updates by Creating an Equilibrium in an Active Software Ecosystem of Globally Distributed Stakeholders
von: Yim, Keun Soo, et al.
Veröffentlicht: (2024)
von: Yim, Keun Soo, et al.
Veröffentlicht: (2024)
OpenSCV: An Open Hierarchical Taxonomy for Smart Contract Vulnerabilities
von: Vidal, Fernando Richter, et al.
Veröffentlicht: (2023)
von: Vidal, Fernando Richter, et al.
Veröffentlicht: (2023)
Deep Learning Aided Software Vulnerability Detection: A Survey
von: Uddin, Md Nizam, et al.
Veröffentlicht: (2025)
von: Uddin, Md Nizam, et al.
Veröffentlicht: (2025)
SHERLOCK: A Deep Learning Approach To Detect Software Vulnerabilities
von: Jawwadh, Saadh, et al.
Veröffentlicht: (2025)
von: Jawwadh, Saadh, et al.
Veröffentlicht: (2025)
SoK: Towards Reproducibility for Software Packages in Scripting Language Ecosystems
von: Pohl, Timo, et al.
Veröffentlicht: (2025)
von: Pohl, Timo, et al.
Veröffentlicht: (2025)
Ähnliche Einträge
-
The Popularity Hypothesis in Software Security: A Large-Scale Replication with PHP Packages
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025) -
An Alignment Between the CRA's Essential Requirements and the ATT&CK's Mitigations
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025) -
Vulnerability Patching Across Software Products and Software Components: A Case Study of Red Hat's Product Portfolio
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2025) -
An Empirical Study of Vulnerability Handling Times in CPython
von: Ruohonen, Jukka
Veröffentlicht: (2024) -
An Overview of Cyber Security Funding for Open Source Software
von: Ruohonen, Jukka, et al.
Veröffentlicht: (2024)