SwePub
Sök i LIBRIS databas

  Extended search

WFRF:(Monperrus Martin)
 

Search: WFRF:(Monperrus Martin) > (2023) > Software Bill of Ma...

Software Bill of Materials in Java

Balliu, Musard (author)
KTH,Teoretisk datalogi, TCS
Baudry, Benoit (author)
KTH,Programvaruteknik och datorsystem, SCS
Bobadilla, Sofia (author)
KTH,Teoretisk datalogi, TCS
show more...
Ekstedt, Mathias, 1975- (author)
KTH,Nätverk och systemteknik
Monperrus, Martin (author)
KTH,Teoretisk datalogi, TCS
Ron Arteaga, Javier (author)
KTH,Teoretisk datalogi, TCS
Sharma, Aman (author)
KTH,Teoretisk datalogi, TCS
Skoglund, Gabriel (author)
KTH,Teoretisk datalogi, TCS
Soto Valero, César (author)
KTH,Programvaruteknik och datorsystem, SCS
Wittlinger, Martin (author)
KTH,Teoretisk datalogi, TCS
show less...
 (creator_code:org_t)
Association for Computing Machinery (ACM), 2023
2023
English.
In: SCORED 2023 - Proceedings of the 2023 Workshop on Software Supply Chain Offensive Research and Ecosystem Defenses. - : Association for Computing Machinery (ACM). ; , s. 75-76
  • Conference paper (peer-reviewed)
Abstract Subject headings
Close  
  • Modern software applications are virtually never built entirely in-house. As a matter of fact, they reuse many third-party dependencies, which form the core of their software supply chain [1]. The large number of dependencies in an application has turned into a major challenge for both security and reliability. For example, to compromise a high-value application, malicious actors can choose to attack a less well-guarded dependency of the project [2]. Even when there is no malicious intent, bugs can propagate through the software supply chain and cause breakages in applications. Gathering accurate, upto- date information about all dependencies included in an application is, therefore, of vital importance.

Subject headings

NATURVETENSKAP  -- Data- och informationsvetenskap -- Datavetenskap (hsv//swe)
NATURAL SCIENCES  -- Computer and Information Sciences -- Computer Sciences (hsv//eng)
TEKNIK OCH TEKNOLOGIER  -- Elektroteknik och elektronik -- Datorsystem (hsv//swe)
ENGINEERING AND TECHNOLOGY  -- Electrical Engineering, Electronic Engineering, Information Engineering -- Computer Systems (hsv//eng)

Keyword

sbom
software supply chain

Publication and Content Type

ref (subject category)
kon (subject category)

To the university's database

Kungliga biblioteket hanterar dina personuppgifter i enlighet med EU:s dataskyddsförordning (2018), GDPR. Läs mer om hur det funkar här.
Så här hanterar KB dina uppgifter vid användning av denna tjänst.

 
pil uppåt Close

Copy and save the link in order to return to this view