2 papers
cs.CR2025
Finding Software Supply Chain Attack Paths with Logical Attack Graphs
Luıs Soeiro, Thomas Robert, Stefano Zacchiroli
Cyberattacks are becoming increasingly frequent and sophisticated, often exploiting the software supply chain (SSC) as an attack vector. Attack graphs provide a detailed representa…
cs.SE2025
Wild SBOMs: a Large-scale Dataset of Software Bills of Materials from Public Code
Luıs Soeiro, Thomas Robert, Stefano Zacchiroli
Developers gain productivity by reusing readily available Free and Open Source Software (FOSS) components. Such practices also bring some difficulties, such as managing licensing,…