Results 231 to 240 of about 76,371 (261)
Some of the next articles are maybe not open access.
ACM Transactions on Software Engineering and Methodology, 2023
Open source software (OSS) supply chain enlarges the attack surface of a software system, which makes package registries attractive targets for attacks. Recently, multiple package registries have received intensified attacks with malicious packages.
Ju-Nan Zhang +6 more
semanticscholar +1 more source
Open source software (OSS) supply chain enlarges the attack surface of a software system, which makes package registries attractive targets for attacks. Recently, multiple package registries have received intensified attacks with malicious packages.
Ju-Nan Zhang +6 more
semanticscholar +1 more source
Deprecation of Packages and Releases in Software Ecosystems: A Case Study on NPM
IEEE Transactions on Software Engineering, 2022Deprecation is used by developers to discourage the usage of certain features of a software system. Prior studies have focused on the deprecation of source code features, such as API methods.
F. R. Côgo, G. Oliva, Ahmed E. Hassan
semanticscholar +1 more source
An Empirical Study of Dependency Downgrades in the npm Ecosystem
IEEE Transactions on Software Engineering, 2021In a software ecosystem, a dependency relationship enables a client package to reuse a certain version of a provider package. Packages in a software ecosystem often release versions containing bug fixes, new functionalities, and security enhancements ...
F. R. Côgo, G. Oliva, Ahmed E. Hassan
semanticscholar +1 more source
DONAPI: Malicious NPM Packages Detector using Behavior Sequence Knowledge Mapping
USENIX Security SymposiumWith the growing popularity of modularity in software development comes the rise of package managers and language ecosystems. Among them, npm stands out as the most extensive package manager, hosting more than 2 million third-party open-source packages ...
Cheng Huang +9 more
semanticscholar +1 more source
Maltracker: A Fine-Grained NPM Malware Tracker Copiloted by LLM-Enhanced Dataset
International Symposium on Software Testing and AnalysisAs the largest package registry, Node Package Manager (NPM) has become the prime target for various supply chain attacks recently and has been flooded with numerous malicious packages, posing significant security risks to end-users.
Zeliang Yu +3 more
semanticscholar +1 more source
Investigating The Reproducibility of NPM Packages
IEEE International Conference on Software Maintenance and Evolution, 2020Node.js has been popularly used for web application development, partially because of its large software ecosystem known as NPM (Node Package Manager) packages.
Pronnoy Goswami +4 more
semanticscholar +1 more source
J. Softw. Evol. Process., 2019
Reusable Open Source Software (OSS) components for major programming languages are available in package repositories. Developers rely on package management tools to automate deployments, specifying which package releases satisfy the needs of their ...
Ahmed Zerouali +5 more
semanticscholar +1 more source
Reusable Open Source Software (OSS) components for major programming languages are available in package repositories. Developers rely on package management tools to automate deployments, specifying which package releases satisfy the needs of their ...
Ahmed Zerouali +5 more
semanticscholar +1 more source
Simplifying the Search of npm Packages
Information and Software Technology, 2020Context Code reuse, generally done through software packages, allows developers to reduce time-to-market and improve code quality. The npm ecosystem is a Node.js package management system which contains more than 700 K Node.js packages and to help ...
Ahmad Abdellatif +4 more
semanticscholar +1 more source
Examining the unintended outcomes of NPM reforms in Indonesia
Public Money & Management, 2019This paper argues that despite Indonesia’s implementation of public sector reforms, the impact of these reforms has yet to achieve the goal of improving governance and preventing corruption.
Harun Harun +3 more
semanticscholar +1 more source
Fusion of a kinase gene, ALK, to a nucleolar protein gene, NPM, in non-Hodgkin's lymphoma.
Science, 1994S. Morris +6 more
semanticscholar +1 more source

