The State of the SBOM Tool Ecosystems: A Comparative Analysis of SPDX and CycloneDX
Fuente:
arXiv
Saved in:
| Main Authors: | Bangash, Abdul Ali, Ge, Tongxu, Zhao, Zhimin, Singh, Arshdeep, Wang, Zitao, Adams, Bram |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
An Empirical Study of Challenges in Machine Learning Asset Management
by: Zhao, Zhimin, et al.
Published: (2024)
by: Zhao, Zhimin, et al.
Published: (2024)
Towards Evaluation Engineering: An Empirical Study of ML Evaluation Harnesses in the Wild
by: Zhao, Zhimin, et al.
Published: (2026)
by: Zhao, Zhimin, et al.
Published: (2026)
On the Workflows and Smells of Leaderboard Operations (LBOps): An Exploratory Study of Foundation Model Leaderboards
by: Zhao, Zhimin, et al.
Published: (2024)
by: Zhao, Zhimin, et al.
Published: (2024)
SBOM Generation Tools in the Python Ecosystem: an In-Detail Analysis
by: Cofano, Serena, et al.
Published: (2024)
by: Cofano, Serena, et al.
Published: (2024)
HAFix: History-Augmented Large Language Models for Bug Fixing
by: Shi, Yu, et al.
Published: (2025)
by: Shi, Yu, et al.
Published: (2025)
The State of Documentation Practices of Third-party Machine Learning Models and Datasets
by: Oreamuno, Ernesto Lang, et al.
Published: (2023)
by: Oreamuno, Ernesto Lang, et al.
Published: (2023)
On the synchronization between Hugging Face pre-trained language models and their upstream GitHub repository
by: Ajibode, Adekunle, et al.
Published: (2025)
by: Ajibode, Adekunle, et al.
Published: (2025)
Towards Semantic Versioning of Open Pre-trained Language Model Releases on Hugging Face
by: Ajibode, Adekunle, et al.
Published: (2024)
by: Ajibode, Adekunle, et al.
Published: (2024)
A Large Scale Empirical Analysis on the Adherence Gap between Standards and Tools in SBOM
by: Wang, Chengjie, et al.
Published: (2026)
by: Wang, Chengjie, et al.
Published: (2026)
Understanding Prompt Management in GitHub Repositories: A Call for Best Practices
by: Li, Hao, et al.
Published: (2025)
by: Li, Hao, et al.
Published: (2025)
Catch the Butterfly: Peeking into the Terms and Conflicts among SPDX Licenses
by: Liu, Tao, et al.
Published: (2024)
by: Liu, Tao, et al.
Published: (2024)
What Slows Down FMware Development? An Empirical Study of Developer Challenges and Resolution Times
by: Wang, Zitao, et al.
Published: (2025)
by: Wang, Zitao, et al.
Published: (2025)
A Dataset of Software Bill of Materials for Evaluating SBOM Consumption Tools
by: Kishimoto, Rio, et al.
Published: (2025)
by: Kishimoto, Rio, et al.
Published: (2025)
IRJIT: A Simple, Online, Information Retrieval Approach for Just-In-Time Software Defect Prediction
by: Sahar, Hareem, et al.
Published: (2022)
by: Sahar, Hareem, et al.
Published: (2022)
A Landscape Study of Open Source and Proprietary Tools for Software Bill of Materials (SBOM)
by: Mirakhorli, Mehdi, et al.
Published: (2024)
by: Mirakhorli, Mehdi, et al.
Published: (2024)
UniBOM -- A Unified SBOM Analysis and Visualisation Tool for IoT Systems and Beyond
by: Safronov, Vadim, et al.
Published: (2025)
by: Safronov, Vadim, et al.
Published: (2025)
SBOM Challenges for Developers: From Analysis of Stack Overflow Questions
by: Otoda, Wataru, et al.
Published: (2025)
by: Otoda, Wataru, et al.
Published: (2025)
zkSBOM: Privacy-Preserving SBOM Sharing with Zero-Knowledge Sets
by: Sorger, Tom, et al.
Published: (2026)
by: Sorger, Tom, et al.
Published: (2026)
Novice Developers Produce Larger Review Overhead for Project Maintainers while Vibe Coding
by: Asdaque, Syed Ammar, et al.
Published: (2026)
by: Asdaque, Syed Ammar, et al.
Published: (2026)
VeriSBOM: Secure and Verifiable SBOM Sharing Via Zero-Knowledge Proofs
by: Castiglione, Gianpietro, et al.
Published: (2026)
by: Castiglione, Gianpietro, et al.
Published: (2026)
On the Footprints of Reviewer Bots Feedback on Agentic Pull Requests in OSS GitHub Repositories
by: Fatima, Syeda Kaneez, et al.
Published: (2026)
by: Fatima, Syeda Kaneez, et al.
Published: (2026)
Trust in Software Supply Chains: Blockchain-Enabled SBOM and the AIBOM Future
by: Xia, Boming, et al.
Published: (2023)
by: Xia, Boming, et al.
Published: (2023)
On the Adoption of AI Coding Agents in Open-source Android and iOS Development
by: Khan, Muhammad Ahmad, et al.
Published: (2026)
by: Khan, Muhammad Ahmad, et al.
Published: (2026)
An Empirical Study on Code Review Activity Prediction and Its Impact in Practice
by: Olewicki, Doriane, et al.
Published: (2024)
by: Olewicki, Doriane, et al.
Published: (2024)
An Empirical Study of Developers' Challenges in Implementing Workflows as Code: A Case Study on Apache Airflow
by: Yasmin, Jerin, et al.
Published: (2024)
by: Yasmin, Jerin, et al.
Published: (2024)
From Hugging Face to GitHub: Tracing License Drift in the Open-Source AI Ecosystem
by: Jewitt, James, et al.
Published: (2025)
by: Jewitt, James, et al.
Published: (2025)
Hidden Dependencies and Component Variants in SBOM-Based Software Composition Analysis
by: Rasheed, Shawn, et al.
Published: (2026)
by: Rasheed, Shawn, et al.
Published: (2026)
Automating SBOM Generation with Zero-Shot Semantic Similarity
by: Pereira, Devin, et al.
Published: (2024)
by: Pereira, Devin, et al.
Published: (2024)
Cluster-guided LLM-Based Anonymization of Software Analytics Data: Studying Privacy-Utility Trade-offs in JIT Defect Prediction
by: Khan, Maaz, et al.
Published: (2025)
by: Khan, Maaz, et al.
Published: (2025)
Does Using Bazel Help Speed Up Continuous Integration Builds?
by: Zheng, Shenyu, et al.
Published: (2024)
by: Zheng, Shenyu, et al.
Published: (2024)
Model Context Protocol (MCP) Tool Descriptions Are Smelly! Towards Improving AI Agent Efficiency with Augmented MCP Tool Descriptions
by: Hasan, Mohammed Mehedi, et al.
Published: (2026)
by: Hasan, Mohammed Mehedi, et al.
Published: (2026)
SwarmUpdate: Hierarchical Software Updates and Deep Learning Model Patching for Heterogeneous UAV Swarms
by: Geng, Lin, et al.
Published: (2025)
by: Geng, Lin, et al.
Published: (2025)
Human-AI Synergy in Agentic Code Review
by: Zhong, Suzhen, et al.
Published: (2026)
by: Zhong, Suzhen, et al.
Published: (2026)
AgenticSZZ: Temporal Knowledge Graph-Guided Agentic Bug-Inducing Commit Identification
by: Shi, Yu, et al.
Published: (2026)
by: Shi, Yu, et al.
Published: (2026)
An Empirical Study of Self-Admitted Technical Debt in Machine Learning Software
by: Bhatia, Aaditya, et al.
Published: (2023)
by: Bhatia, Aaditya, et al.
Published: (2023)
A Practical Solution to Systematically Monitor Inconsistencies in SBOM-based Vulnerability Scanners
by: Rosso, Martin, et al.
Published: (2025)
by: Rosso, Martin, et al.
Published: (2025)
SBOMproof: Beyond Alleged SBOM Compliance for Supply Chain Security of Container Images
by: Bufalino, Jacopo, et al.
Published: (2025)
by: Bufalino, Jacopo, et al.
Published: (2025)
Blended PC Peer Review Model: Process and Reflection
by: Tantithamthavorn, Chakkrit, et al.
Published: (2025)
by: Tantithamthavorn, Chakkrit, et al.
Published: (2025)
Individual Differences Limit Predicting Well-being and Productivity Using Software Repositories: A Longitudinal Industrial Study
by: Kuutila, Miikka, et al.
Published: (2021)
by: Kuutila, Miikka, et al.
Published: (2021)
A State-of-the-practice Release-readiness Checklist for Generative AI-based Software Products
by: Patel, Harsh, et al.
Published: (2024)
by: Patel, Harsh, et al.
Published: (2024)
Similar Items
-
An Empirical Study of Challenges in Machine Learning Asset Management
by: Zhao, Zhimin, et al.
Published: (2024) -
Towards Evaluation Engineering: An Empirical Study of ML Evaluation Harnesses in the Wild
by: Zhao, Zhimin, et al.
Published: (2026) -
On the Workflows and Smells of Leaderboard Operations (LBOps): An Exploratory Study of Foundation Model Leaderboards
by: Zhao, Zhimin, et al.
Published: (2024) -
SBOM Generation Tools in the Python Ecosystem: an In-Detail Analysis
by: Cofano, Serena, et al.
Published: (2024) -
HAFix: History-Augmented Large Language Models for Bug Fixing
by: Shi, Yu, et al.
Published: (2025)