4 ThesesFinal Thesis: Evaluation and Improvement of C based dependency ecosystems in SCA Tool
Abstract: Open Source Software (OSS) is widely adopted, but introduces security and license compliance risks that must be managed. Software Composition Analysis (SCA) tools address these challenges by identifying dependencies, generating Software Bill of Materials (SBOM), and detecting vulnerabilities. Although SCA Tool already supported ecosystems such as npm, it lacked support for C-based (e.g., C, […]Abstract: Open Source Software (OSS) is widely adopted, but introduces security and license compliance risks that must be managed. Software Composition Analysis (SCA) tools address these challenges by identifying dependencies, generating Software Bill of Materials (SBOM), and detecting vulnerabilities. Although SCA Tool already supported ecosystems such as npm, it lacked support for C-based (e.g., C, […]