Paper
15 January 2025 On the security risk analysis method of open source software supply chain
Fuchuan Tang, Ming Xie, Ying Ling, Shaofeng Ming, Wei Zhang
Author Affiliations +
Proceedings Volume 13516, Fourth International Conference on Network Communication and Information Security (ICNCIS 2024); 1351610 (2025) https://doi.org/10.1117/12.3052239
Event: International Conference on Network Communication and Information Security (ICNCIS 2024), 2024, Hangzhou, China
Abstract
This paper presents a comprehensive assessment method of the security of open source components. The process is constructed using three analytical techniques: hierarchical analysis, expert scoring, and linear weighting. These techniques are employed to identify the parameters that affect the security of open source software. The parameters are then used to evaluate the security of open source components. The evaluation results can inform decisions on the introduction of open source components.
(2025) Published by SPIE. Downloading of the abstract is permitted for personal use only.
Fuchuan Tang, Ming Xie, Ying Ling, Shaofeng Ming, and Wei Zhang "On the security risk analysis method of open source software supply chain", Proc. SPIE 13516, Fourth International Conference on Network Communication and Information Security (ICNCIS 2024), 1351610 (15 January 2025); https://doi.org/10.1117/12.3052239
Advertisement
Advertisement
RIGHTS & PERMISSIONS
Get copyright permission  Get copyright permission on Copyright Marketplace
KEYWORDS
Computer security

Matrices

Risk assessment

Analytical research

Chromium

Software development

Classification systems

Back to Top