330
v1v2 (latest)

Challenges of Producing Software Bill Of Materials for Java

IEEE Security and Privacy (S&P), 2023
Abstract

Software bills of materials (SBOM) promise to become the backbone of software supply chain hardening. We deep-dive into 6 tools and the accuracy of the SBOMs they produce for complex open-source Java projects. Our novel insights reveal some hard challenges for the accurate production and usage of SBOMs.

View on arXiv
Comments on this paper