Large-scale study shows SBOM vulnerability scanners have 92% false positives from unreachable code, cut 61.9% by adding function call analysis.
2025.Container scanning
1 Pith paper cite this work. Polarity classification is still indexing.
1
Pith paper citing it
fields
cs.CR 1years
2025 1verdicts
ACCEPT 1representative citing papers
citing papers explorer
-
A Reality Check on SBOM-based Vulnerability Management: An Empirical Study and A Path Forward
Large-scale study shows SBOM vulnerability scanners have 92% false positives from unreachable code, cut 61.9% by adding function call analysis.