Mitigating persistence of open-source vulnerabilities in maven ecosystem

L Zhang, C Liu, S Chen, Z Xu, L Fan… - 2023 38th IEEE/ACM …, 2023 - ieeexplore.ieee.org
Vulnerabilities from third-party libraries (TPLs) have been unveiled to threaten the Maven
ecosystem in the long term. Despite patches being released promptly after vulnerabilities …

Systematic literature review of the trust reinforcement mechanisms exist in package ecosystems

A Temelko, F Hou, S Farshidi, S Jansen - arXiv preprint arXiv:2407.02522, 2024 - arxiv.org
We conducted a thorough SLR to better grasp the challenges and possible solutions
associated with existing npm security tools. Our goal was to delve into documented …

Integrating Trust in the Worldwide Software Ecosystem: A Practical Tool for Enhanced Package Security

A Temelko - 2024 - studenttheses.uu.nl
The landscape of open-source software development is significantly enhanced by tools that
enable developers to evaluate the trustworthiness of software packages. A recent initiative in …