1 paper
Ziheng Liu, Runzhi He, Minghui Zhou
Software supply chain attacks have revealed blind spots in existing SCA tools, which are often limited to a single ecosystem and assess either software artifacts or community activ…