Challenges of Producing Software Bill Of Materials for Java
Musard Balliu
Benoit Baudry
Sofia Bobadilla
M. Ekstedt
Monperrus Martin
Javier Ron
Aman Sharma
Gabriel Skoglund
César Soto-Valero
Martin Wittlinger

Abstract
Software bills of materials (SBOM) promise to become the backbone of software supply chain hardening. We deep-dive into 6 tools and the accuracy of the SBOMs they produce for complex open-source Java projects. Our novel insights reveal some hard challenges for the accurate production and usage of SBOMs.
View on arXivComments on this paper