Bytecode-centric Detection of Known-to-be-vulnerable Dependencies in Java Projects
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | Schott, Stefan, Ponta, Serena Elisa, Fischer, Wolfram, Klauke, Jonas, Bodden, Eric |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2025
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
Uncovering Hidden Inclusions of Vulnerable Dependencies in Real-World Java Projects
von: Schott, Stefan, et al.
Veröffentlicht: (2026)
von: Schott, Stefan, et al.
Veröffentlicht: (2026)
Compilation of Commit Changes within Java Source Code Repositories
von: Schott, Stefan, et al.
Veröffentlicht: (2024)
von: Schott, Stefan, et al.
Veröffentlicht: (2024)
A Soundness and Precision Benchmark for Java Debloating Tools
von: Klauke, Jonas, et al.
Veröffentlicht: (2025)
von: Klauke, Jonas, et al.
Veröffentlicht: (2025)
Beyond Metadata: Code-centric and Usage-based Analysis of Known Vulnerabilities in Open-source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2018)
von: Ponta, Serena E., et al.
Veröffentlicht: (2018)
Impact assessment for vulnerabilities in open-source software libraries
von: Plate, Henrik, et al.
Veröffentlicht: (2015)
von: Plate, Henrik, et al.
Veröffentlicht: (2015)
SourceBroken: A large-scale analysis on the (un)reliability of SourceRank in the PyPI ecosystem
von: Montaruli, Biagio, et al.
Veröffentlicht: (2025)
von: Montaruli, Biagio, et al.
Veröffentlicht: (2025)
Toward an Android Static Analysis Approach for Data Protection
von: Khedkar, Mugdha, et al.
Veröffentlicht: (2024)
von: Khedkar, Mugdha, et al.
Veröffentlicht: (2024)
Classport: Designing Runtime Dependency Introspection for Java
von: Cofano, Serena, et al.
Veröffentlicht: (2025)
von: Cofano, Serena, et al.
Veröffentlicht: (2025)
Visualizing Privacy-Relevant Data Flows in Android Applications
von: Khedkar, Mugdha, et al.
Veröffentlicht: (2025)
von: Khedkar, Mugdha, et al.
Veröffentlicht: (2025)
From Detection to Prevention: Explaining Security-Critical Code to Avoid Vulnerabilities
von: Krishnamurthy, Ranjith, et al.
Veröffentlicht: (2026)
von: Krishnamurthy, Ranjith, et al.
Veröffentlicht: (2026)
Software Security Analysis in 2030 and Beyond: A Research Roadmap
von: Böhme, Marcel, et al.
Veröffentlicht: (2024)
von: Böhme, Marcel, et al.
Veröffentlicht: (2024)
A Manually-Curated Dataset of Fixes to Vulnerabilities of Open-Source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
von: Ponta, Serena E., et al.
Veröffentlicht: (2019)
Insecure Ingredients? Exploring Dependency Update Patterns of Bundled JavaScript Packages on the Web
von: Swierzy, Ben, et al.
Veröffentlicht: (2025)
von: Swierzy, Ben, et al.
Veröffentlicht: (2025)
Enhancing Android Malware Detection: The Influence of ChatGPT on Decision-centric Task
von: Li, Yao, et al.
Veröffentlicht: (2024)
von: Li, Yao, et al.
Veröffentlicht: (2024)
Yaksha-Prashna: Understanding eBPF Bytecode Network Function Behavior
von: Singh, Animesh, et al.
Veröffentlicht: (2026)
von: Singh, Animesh, et al.
Veröffentlicht: (2026)
Static Semantics Reconstruction for Enhancing JavaScript-WebAssembly Multilingual Malware Detection
von: Xia, Yifan, et al.
Veröffentlicht: (2023)
von: Xia, Yifan, et al.
Veröffentlicht: (2023)
Asset-centric Threat Modeling for AI-based Systems
von: von der Assen, Jan, et al.
Veröffentlicht: (2024)
von: von der Assen, Jan, et al.
Veröffentlicht: (2024)
R+R: Reassessing Java Security API Misuse in Current LLMs: A Replication on JCA and JSSE APIs with External Security Knowledge
von: Lu, Tianhe, et al.
Veröffentlicht: (2026)
von: Lu, Tianhe, et al.
Veröffentlicht: (2026)
PatchFuzz: Patch Fuzzing for JavaScript Engines
von: Wang, Junjie, et al.
Veröffentlicht: (2025)
von: Wang, Junjie, et al.
Veröffentlicht: (2025)
Detecting Protracted Vulnerabilities in Open Source Projects
von: Sridharkumar, Arjun, et al.
Veröffentlicht: (2026)
von: Sridharkumar, Arjun, et al.
Veröffentlicht: (2026)
Maven-Lockfile: High Integrity Rebuild of Past Java Releases
von: Schmid, Larissa, et al.
Veröffentlicht: (2025)
von: Schmid, Larissa, et al.
Veröffentlicht: (2025)
PPT4J: Patch Presence Test for Java Binaries
von: Pan, Zhiyuan, et al.
Veröffentlicht: (2023)
von: Pan, Zhiyuan, et al.
Veröffentlicht: (2023)
Challenging Machine Learning Algorithms in Predicting Vulnerable JavaScript Functions
von: Ferenc, Rudolf, et al.
Veröffentlicht: (2024)
von: Ferenc, Rudolf, et al.
Veröffentlicht: (2024)
Fakeium: A Dynamic Execution Environment for JavaScript Program Analysis
von: Moreno, José Miguel, et al.
Veröffentlicht: (2024)
von: Moreno, José Miguel, et al.
Veröffentlicht: (2024)
From Struggle to Simplicity with a Usable and Secure API for Encryption in Java
von: Firouzi, Ehsan, et al.
Veröffentlicht: (2024)
von: Firouzi, Ehsan, et al.
Veröffentlicht: (2024)
Coverage-Guided Multi-Agent Harness Generation for Java Library Fuzzing
von: Loose, Nils, et al.
Veröffentlicht: (2026)
von: Loose, Nils, et al.
Veröffentlicht: (2026)
From Obfuscated to Obvious: A Comprehensive JavaScript Deobfuscation Tool for Security Analysis
von: Zhou, Dongchao, et al.
Veröffentlicht: (2025)
von: Zhou, Dongchao, et al.
Veröffentlicht: (2025)
SBOM.EXE: Countering Dynamic Code Injection based on Software Bill of Materials in Java
von: Sharma, Aman, et al.
Veröffentlicht: (2024)
von: Sharma, Aman, et al.
Veröffentlicht: (2024)
A Large-scale Empirical Study on the Generalizability of Disclosed Java Library Vulnerability Exploits
von: Chen, Zirui, et al.
Veröffentlicht: (2026)
von: Chen, Zirui, et al.
Veröffentlicht: (2026)
SAVANT: Vulnerability Detection in Application Dependencies through Semantic-Guided Reachability Analysis
von: Lingxiang, Wang, et al.
Veröffentlicht: (2025)
von: Lingxiang, Wang, et al.
Veröffentlicht: (2025)
Sleeping Giants -- Activating Dormant Java Deserialization Gadget Chains through Stealthy Code Changes
von: Kreyssig, Bruno, et al.
Veröffentlicht: (2025)
von: Kreyssig, Bruno, et al.
Veröffentlicht: (2025)
Does the Vulnerability Threaten Our Projects? Automated Vulnerable API Detection for Third-Party Libraries
von: Zhang, Fangyuan, et al.
Veröffentlicht: (2024)
von: Zhang, Fangyuan, et al.
Veröffentlicht: (2024)
SBOM Generation Tools in the Python Ecosystem: an In-Detail Analysis
von: Cofano, Serena, et al.
Veröffentlicht: (2024)
von: Cofano, Serena, et al.
Veröffentlicht: (2024)
In the Magma chamber: Update and challenges in ground-truth vulnerabilities revival for automatic input generator comparison
von: Riom, Timothée, et al.
Veröffentlicht: (2025)
von: Riom, Timothée, et al.
Veröffentlicht: (2025)
A unit-based symbolic execution method for detecting memory corruption vulnerabilities in executable codes
von: Baradaran, Sara, et al.
Veröffentlicht: (2022)
von: Baradaran, Sara, et al.
Veröffentlicht: (2022)
The Code the World Depends On: A First Look at Technology Makers' Open Source Software Dependencies
von: Patrick, Cadence, et al.
Veröffentlicht: (2024)
von: Patrick, Cadence, et al.
Veröffentlicht: (2024)
Comparing Effectiveness and Efficiency of Interactive Application Security Testing (IAST) and Runtime Application Self-Protection (RASP) Tools in a Large Java-based System
von: Seth, Aishwarya, et al.
Veröffentlicht: (2023)
von: Seth, Aishwarya, et al.
Veröffentlicht: (2023)
NESSiE: The Necessary Safety Benchmark -- Identifying Errors that should not Exist
von: Bertram, Johannes, et al.
Veröffentlicht: (2026)
von: Bertram, Johannes, et al.
Veröffentlicht: (2026)
Towards a Benchmark for Dependency Decision-Making
von: Singla, Tanmay, et al.
Veröffentlicht: (2026)
von: Singla, Tanmay, et al.
Veröffentlicht: (2026)
An Empirical Study of Vulnerable Package Dependencies in LLM Repositories
von: Liu, Shuhan, et al.
Veröffentlicht: (2025)
von: Liu, Shuhan, et al.
Veröffentlicht: (2025)
Ähnliche Einträge
-
Uncovering Hidden Inclusions of Vulnerable Dependencies in Real-World Java Projects
von: Schott, Stefan, et al.
Veröffentlicht: (2026) -
Compilation of Commit Changes within Java Source Code Repositories
von: Schott, Stefan, et al.
Veröffentlicht: (2024) -
A Soundness and Precision Benchmark for Java Debloating Tools
von: Klauke, Jonas, et al.
Veröffentlicht: (2025) -
Beyond Metadata: Code-centric and Usage-based Analysis of Known Vulnerabilities in Open-source Software
von: Ponta, Serena E., et al.
Veröffentlicht: (2018) -
Impact assessment for vulnerabilities in open-source software libraries
von: Plate, Henrik, et al.
Veröffentlicht: (2015)