2023 IEEE Symposium on Security and Privacy (SP) 2023
DOI: 10.1109/sp46215.2023.10179320
|View full text |Cite
|
Sign up to set email alerts
|

It’s like flossing your teeth: On the Importance and Challenges of Reproducible Builds for Software Supply Chain Security

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
0
0

Year Published

2023
2023
2024
2024

Publication Types

Select...
3
2

Relationship

0
5

Authors

Journals

citations
Cited by 6 publications
(1 citation statement)
references
References 99 publications
0
0
0
Order By: Relevance
“…The reproducible build assures the consistency and integrity of the built software, making it more difficult for attackers to alter the code during its compiling/construction. Fourné et al, in [48], discussed the importance of the reproducible build for software security and provided recommendations on integrating reproducible builds in open-source software. It can be used in our software assurance scheme to generate the proof using the executable files because, in a reproducible build, the executable files are the same regardless of the environment in which it is built.…”
Section: Assuring Beyond the Software Codementioning
confidence: 99%
“…The reproducible build assures the consistency and integrity of the built software, making it more difficult for attackers to alter the code during its compiling/construction. Fourné et al, in [48], discussed the importance of the reproducible build for software security and provided recommendations on integrating reproducible builds in open-source software. It can be used in our software assurance scheme to generate the proof using the executable files because, in a reproducible build, the executable files are the same regardless of the environment in which it is built.…”
Section: Assuring Beyond the Software Codementioning
confidence: 99%