Fifty Years of Open Source Software Supply-Chain Security.

The article discusses the history of open source software supply-chain security since the U.S. Air Force's release of a report in 1974 regarding the security of the Honeywell International Inc.'s Multics time-sharing operations system, and it mentions a potential problem involving a back door where...

Descripción completa

Detalles Bibliográficos
Publicado en:Communications of the ACM Vol. 68; no. 10; pp. 88 - 96
Autor principal: Cox, Russ
Formato: Artículo
Publicado: Association for Computing Machinery Oct2025
Materias:
Acceso en línea:Ver este registro en EBSCOhost
fields @attributes:
  recordID: 1
pdfLink:
plink: https://search.ebscohost.com/login.aspx?direct=true&db=hlh&AN=188921686&site=ehost-live
header:
  @attributes:
    shortDbName: hlh
    uiTerm: 188921686
    longDbName: Humanities International Complete
    uiTag: AN
  controlInfo:
    bkinfo:
    jinfo:
      jid:
        00010782
        ACM
      jtl: Communications of the ACM
      issn: 00010782
      maglogo: N
    pubinfo:
      dt: Oct2025
      vid: 68
      iid: 10
      pid: 68
      pub: Association for Computing Machinery
    artinfo:
      ui:
        188921686
        10.1145/3762635
      ppf: 88
      ppct: 8
      formats:
      tig:
        atl: Fifty Years of Open Source Software Supply-Chain Security.
      aug:
        au: Cox, Russ
        affil: Google, Cambridge, MA, USA
      su:
        Open source software
        Computer software security
        Computer security vulnerabilities
        Kernel operating systems
        Honeywell International Inc.
      sug:
        subj:
          Open source software
          Computer software security
          Computer security vulnerabilities
          Kernel operating systems
          Honeywell International Inc.
      ab: The article discusses the history of open source software supply-chain security since the U.S. Air Force's release of a report in 1974 regarding the security of the Honeywell International Inc.'s Multics time-sharing operations system, and it mentions a potential problem involving a back door where the system call allowed the reading or writing of an arbitrary word of kernel memory. It states that a software supply chain is defined as all places where a software supply-chain vulnerability or attack could occur.
      pubtype: Periodical
      doctype: Article
      src: R
    language: English
    refInfo:
    copyright:
      @attributes:
        flag: Y
      dt:
        @attributes:
          year: 2025
    holdings:
      @attributes:
        islocal: N