{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,6]],"date-time":"2024-09-06T02:51:40Z","timestamp":1725591100517},"reference-count":34,"publisher":"IEEE","license":[{"start":{"date-parts":[[2022,5,1]],"date-time":"2022-05-01T00:00:00Z","timestamp":1651363200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2022,5,1]],"date-time":"2022-05-01T00:00:00Z","timestamp":1651363200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2022,5]]},"DOI":"10.1109\/icse-seip55303.2022.9793937","type":"proceedings-article","created":{"date-parts":[[2022,6,17]],"date-time":"2022-06-17T19:35:14Z","timestamp":1655494514000},"page":"297-306","source":"Crossref","is-referenced-by-count":0,"title":["Towards Build Verifiability for Java-based Systems"],"prefix":"10.1109","author":[{"given":"Jiawen","family":"Xiong","sequence":"first","affiliation":[{"name":"Huawei China,Shenzhen,China"}]},{"given":"Yong","family":"Shi","sequence":"additional","affiliation":[{"name":"Huawei China,Shenzhen,China"}]},{"given":"Boyuan","family":"Chen","sequence":"additional","affiliation":[{"name":"Huawei Canada,Kinston,Canada"}]},{"given":"Filipe R.","family":"Cogo","sequence":"additional","affiliation":[{"name":"Huawei Canada,Kinston,Canada"}]},{"given":"Zhen Ming","family":"Jiang","sequence":"additional","affiliation":[{"name":"York University,Toronto,Canada"}]}],"member":"263","reference":[{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1145\/358198.358210"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2021.3092692"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/ASE.2019.00056"},{"key":"ref30","doi-asserted-by":"publisher","DOI":"10.1145\/3180155.3180224"},{"key":"ref34","doi-asserted-by":"publisher","DOI":"10.1145\/3372297.3420015"},{"journal-title":"CipherKit reproducible builds","year":"2021","key":"ref10"},{"journal-title":"Huawei Cyber Security Evaluation Centre (HCSEC) Oversight Board - Annual Report","year":"2021","key":"ref11"},{"journal-title":"JavaDoc The Java API Document Generator","year":"2021","key":"ref12"},{"journal-title":"Package java lang instrument","year":"2021","key":"ref13"},{"journal-title":"Reproducible\/Verifiable Builds - Maven","year":"2021","key":"ref14"},{"journal-title":"TIOBE Index for October 2021","year":"2021","key":"ref15"},{"journal-title":"WebLogic JSP Reference","year":"2021","key":"ref16"},{"journal-title":"Reproducible Build Maven Plugin","year":"2021","key":"ref17"},{"journal-title":"Reproducible Builds","year":"2021","key":"ref18"},{"journal-title":"Sources of non-determinism Con-stant pool table","year":"2021","key":"ref19"},{"key":"ref28","article-title":"Reproducible Containers","author":"leija","year":"0","journal-title":"Proceedings of the 25th International Conference on Architectural Support for Programming Languages and Operating Systems (ASPLOS'20)"},{"journal-title":"Configuring for Reproducible Builds - Maven","year":"2021","key":"ref4"},{"key":"ref27","first-page":"167","article-title":"Reproducible Containers","author":"leija","year":"0","journal-title":"Proceedings of the Twenty-Fifth International Conference on Architectural Support for Programming Languages and Operating Systems (ASPLOS '20)"},{"journal-title":"Sonatype Stops Software Supply Chain Attack Aimed at the Java Developer Community","year":"2021","key":"ref3"},{"journal-title":"Reproducible Build Maven Plugin","year":"2021","key":"ref6"},{"key":"ref29","doi-asserted-by":"crossref","first-page":"23","DOI":"10.1007\/978-3-030-52683-2_2","article-title":"Backstabber's Knife Collection: A Review of Open Source Software Supply Chain Attacks","author":"ohm","year":"2020","journal-title":"Detection of Intrusions and Malware and Vulnerability Assessment"},{"journal-title":"Rebuilding artifacts from (Maven) Central Repository","year":"2021","key":"ref5"},{"journal-title":"Reproducible builds in Gradle","year":"2021","key":"ref8"},{"journal-title":"Reproducible Builds - JVM","year":"2021","key":"ref7"},{"journal-title":"Preventing Supply Chain Attacks like Solar-Winds","year":"2021","key":"ref2"},{"journal-title":"Reproducible Builds in Maven and Gradle","year":"2021","key":"ref9"},{"journal-title":"Popular approaches to preventing code injection attacks are dangerously wrong","year":"2017","key":"ref1"},{"journal-title":"Sources of non-determinism Git related infor-mation","year":"2021","key":"ref20"},{"journal-title":"Sources of non-determinism JDK version","year":"2021","key":"ref22"},{"journal-title":"Sources of non-determinism JavaDoc","year":"2021","key":"ref21"},{"journal-title":"Sources of non-determinism LineNum-berTable","year":"2021","key":"ref24"},{"journal-title":"Sources of non-determinism Lambda","year":"2021","key":"ref23"},{"key":"ref26","first-page":"0","article-title":"Reproducible Builds: Increasing the Integrity of Software Supply Chains","author":"lamb","year":"2021","journal-title":"IEEE Software"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1145\/2664243.2664288"}],"event":{"name":"2022 IEEE\/ACM 44th International Conference on Software Engineering: Software Engineering in Practice (ICSE-SEIP)","start":{"date-parts":[[2022,5,22]]},"location":"Pittsburgh, PA, USA","end":{"date-parts":[[2022,5,24]]}},"container-title":["2022 IEEE\/ACM 44th International Conference on Software Engineering: Software Engineering in Practice (ICSE-SEIP)"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/9793838\/9793543\/09793937.pdf?arnumber=9793937","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,7,11]],"date-time":"2022-07-11T20:04:31Z","timestamp":1657569871000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/9793937\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,5]]},"references-count":34,"URL":"https:\/\/doi.org\/10.1109\/icse-seip55303.2022.9793937","relation":{},"subject":[],"published":{"date-parts":[[2022,5]]}}}