Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

51 results about "Software dependencies" patented technology

Self-adaptive deployment method and system oriented to credential heterogeneous environment

The invention relates to the technical field of automatic deployment of cloud computing platforms, in particular to a self-adaptive deployment method and system oriented to a credential heterogeneous environment. Aiming at three technical bottlenecks of low multi-CPU architecture adaptation efficiency, frequent software dependence conflicts and complex security baseline configuration in a localization process, a heterogeneous computing resource intelligent scheduling engine and a dynamic security policy generation mechanism are innovatively provided. The method comprises the following steps: constructing a heterogeneous resource portrait through a hardware feature automatic identification technology, and realizing component installation sequence optimization based on a DAG dependency relationship analysis algorithm and Kahn topological sorting; and creating an adaptive network security policy, and sensing the firewall state of the target system in real time through a probe. Compared with a traditional deployment mode, the method supports cross-architecture compatibility, solves the problem of dependency conflicts, improves deployment efficiency, and guarantees consistency and safety of the system.
Owner:TONGFANG KNOWLEDGE DIGITAL PUBLISHING TECH CO LTD

Software dependency relationship automatic integration method and system based on meta packaging

The invention relates to the technical field of embedded system construction, in particular to a software dependency relationship automatic integration method and system based on meta packaging, and the method comprises the steps: S1, creating a meta packaging framework in an embedded construction system, and defining and constructing a stage hook through a Makefile; s2, automatically deploying the pre-compiled software package and the shared dependency library to a target directory of a construction system through a resource injection script; s3, analyzing a metadata file of the pre-compiled software package, extracting dependency relationship information, and generating a global dependency relationship list based on a directed acyclic graph topological sorting algorithm; and S4, inversely writing the global dependency relationship list into the dependency declaration configuration of the meta-packaging by utilizing the dependency aggregation script. By implementing the scheme, the problems of dependency sequence disorder and metadata auditing failure during embedded system integration are solved, the reliability of system integration is improved, the system construction efficiency is optimized, the safety of system construction is enhanced, and the maintainability and expansibility of system construction are improved.
Owner:Shenzhen Jinying Tuolian Technology Co., Ltd.

Risk assessment method, device and equipment for dependency relationship of open source software

The invention relates to a risk assessment method, device and equipment for an open source software dependency relationship. The method comprises the following steps: acquiring software package attribute information of each open source software package in a project to be evaluated and dependency information between the open source software packages; according to the software package attribute information of each open source software package and the dependency information between the open source software packages, constructing a project graph model for the to-be-evaluated project; wherein nodes in the project graph model represent open source software packages, connecting edges among different nodes represent dependency relationships among different open source software packages, and node information of each node comprises software package attribute information of the open source software package corresponding to the node; the side information of each connection side comprises dependency information between the open source software packages corresponding to the nodes connected with the connection sides; and based on the risk prediction model, according to the project graph model, determining a risk assessment result of the to-be-assessed project. By adopting the method, the risk of the project can be fully predicted and mined.
Owner:ELECTRIC POWER RES INST CHINA SOUTHERN POWER GRID CO LTD +1

Operation system-level instrumentation to automatically infer software dependencies

Herein is software dependency reporting with an innovative framework to analytically generate a software bill of materials (SBOM) that is a list of dependencies of a software application that was built in an opaque (i.e. black-box) way. This approach makes minimal assumptions about the build framework(s) and language ecosystem(s) involved with building a software application. For building a deliverable based on source files defined in separate programing languages, source files are read and deliverable files are generated and copied. Unique identifiers of accessed files are recorded by novel probes into a probe log having unprecedented accuracy. The probe log is analyzed to generate a provenance graph that contains a vertex for each file accessed by the build. By graph analytics, a dependency report having unprecedented accuracy is generated for the deliverable from the provenance graph.
Owner:ORACLE INT CORP

Balancing quality and technical cost of updating dependencies in software systems

Methods, systems, and computer-readable storage media for a software dependency update system that processes computer-readable files (e.g., source code file, dependency description file) of a software project to generate an updated dependency graph using linear programming in view of a set of quality metrics for updating dependencies of the software project.
Owner:SAP SE

Network traffic collection method and system based on cloud-based environment

PCT designated stage expiredWO2025107780A1Securing communicationInternet trafficSystem requirements
Disclosed in the present invention are a network traffic collection method and system based on a cloud-based environment. The present invention solves the problems of existing traffic collection being invasive to a monitored system, and having system and software dependency requirements, poor adaptability, and high consumption of computing and network transmission resources. A mirror virtual switch and a virtualized instance agent node are created at a computing node. By mirroring traffic by means of a patch port of a virtual switch, monitoring node data is diverted to the mirror virtual switch, and then is forwarded to the virtualized instance agent node by means of the mirror virtual switch; network traffic data is stored as in a file format, and is forwarded to a data security monitoring platform for monitoring a virtualized instance event in real time, and when the event changes, a flow table of the virtual switch is adjusted on the basis of a monitoring policy. According to the present invention, traffic monitoring is implemented in a software manner, and virtualized instance traffic is collected before packet modification, facilitating the accuracy of security event judgment, involving no intrusive modification to an instance, and no system requirement, and occupying few resources.
Owner:HUAXIN CONSULTATING CO LTD

Systems and methods for determining software dependencies and software change impacts on computer processing

Systems, computer program products, and methods are described herein for determining software dependencies and software change impacts on computer processing. The present disclosure is configured to identify at least one computing component within a network environment; identify historical data for the at least one computing component; apply the historical data to a dependency quotient model; generate, by the dependency quotient model, a dependency quotient based on the at least one computing component, the historical data, and a relationship between the at least one computing component and at least one secondary computing component; and generate, based on the dependency quotient, a system architecture interface component, wherein the system architecture interface component comprises data of the at least one computing component and the at least one secondary computing component within the network environment.
Owner:BANK OF AMERICA CORP

Vulnerability countermeasure management system and vulnerability countermeasure management method

To efficiently and properly manage countermeasures against vulnerability of software, while considering software dependencies or responses to the vulnerability of constituent components.SOLUTION: A vulnerability countermeasure management system uses one or more information processing apparatuses including a processor and a storage apparatus. The system is configured to: acquire, as needed, configuration information of software applied to an execution environment of the software and vulnerability information which is information on vulnerability of constituent components of the software; detect vulnerability of the constituent components based on the vulnerability information; acquire information indicating dependencies between the constituent components of the software; determine countermeasures against the vulnerability of a first constituent component, which is one of the constituent components, in accordance with a status of measures against the vulnerability of a second constituent component, which is another constituent component dependent on the first constituent component; and generate information indicating the determined countermeasures.SELECTED DRAWING: Figure 2
Owner:HITACHI LTD

Software supply chain dependency robustness evaluation method and device, medium and equipment

According to the software supply chain dependency robustness evaluation method and device, the medium and the equipment provided by the invention, when robustness evaluation is performed on the open source software supply chain, the initial dependency graph is constructed according to the software dependency data from the plurality of data sources in the open source software supply chain, so that the space-time complexity of the dependency chain can be comprehensively restored; noise reduction is carried out on the initial dependency graph to form a noise reduction dependency graph by using a noise reduction auto-encoder and a graph neural network, and then multi-scale analysis is carried out to form an analysis result; the loss function of the noise reduction auto-encoder is formed by combining reconstruction loss and structure maintenance loss, and the graph neural network is trained by adopting a weighted aggregation function and a multi-task loss function and is evaluated through a structure disturbance experiment. Therefore, the robustness evaluation result obtained by performing multi-dimensional index evaluation on the analysis result can fully consider the influence of data noise, dynamic structure change and attack scenes, has relatively high accuracy, and provides powerful support for software supply chain security management.
Owner:ELECTRIC POWER RES INST CHINA SOUTHERN POWER GRID CO LTD +1

Software transplantation method based on processor

The invention provides a software transplantation method based on a processor. The software transplantation method comprises the following steps: firstly, carrying out hardware type selection and instruction set compatibility analysis, analyzing a software binary code by utilizing a specific algorithm, counting and comparing instructions, and comprehensively evaluating hardware performance to determine adaptive hardware. Then, software transportability is evaluated, and a software dependency graph and a transplantation feasibility prediction model are constructed; then, an operating system is adapted, the loading sequence and parameters of a kernel module are dynamically adjusted, and setting of a basic input and output system is optimized; in a software transplantation implementation stage, source codes are analyzed and converted based on an abstract syntax tree, open source software adopts incremental compiling cache, binary software analyzes and processes compatibility problems, and meanwhile, a one-key installation program is optimized. And finally, performing server monomer testing and platform testing, monitoring performance, checking functions, analyzing faults and optimizing until the system meets requirements. According to the method, many key problems in the process of transplanting the software to the processor are effectively solved, and the success rate of transplanting and the stability of the system are improved.
Owner:CHINA THREE GORGES CORPORATION +1

Quantitative ranking for software dependency compatibility

A computer system, computer readable storage medium, and computer-implemented method for ranking and ordering software interrelationships. The method includes generating a ranking of software dependency combinations. The ranking is at least partially subject to one or more criteria. The method also includes ordering the ranked software dependency combinations.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

A method and device for self-adapting abnormal IO stop of an SSD control chip

The application discloses a kind of method and device that SSD control chip self-adapting abnormal stop IO, it is related to SSD technical field, comprising: obtaining the fatal error interrupt signal generated by multiple function modules in SSD control chip, global stop flow enable signal is generated by hardware logic circuit;In response to this signal, synchronously control host interface side stops transmitting data to host, and control flash interface side stops reading and writing NAND flash to erase operation.By pure hardware circuit, the fast convergence of error signal and the generation of global stop flow instruction are realized, the extremely fast response of nanosecond to microsecond level is achieved, and the defect of large delay of software dependent scheme is fundamentally overcome.Two ends stop flow are triggered synchronously using single enable signal, the atomicity and cooperativity of operation are ensured, and the risk of data inconsistency is eliminated.The mechanism is independent of central processing unit and firmware operation, and can still be independently and reliably executed in the extreme case of core component failure, significantly improving the data integrity and system reliability of SSD.
Owner:成都芯忆联信息技术有限公司

Software dependency management and testing system

Disclosed in some examples are methods, systems, devices, and machine-readable mediums for managing the testing of software component dependencies. In some examples, the system may track versions of dependencies; provide an interface to create a customized testing environment—e.g., such as by allowing a user to select whether to include a particular dependency and what version of that dependency to include; select test scripts; select test environments; and automate tests of the selected versions. The system may log test results that can be used for proof of regulatory compliance. In some examples, the system may automate the testing of new dependency versions. For example, a new version of a dependency may automatically be tested by the system using one or more test scripts. The results may then be presented to one or more users.
Owner:WELLS FARGO BANK NA

Systems and methods for determining software dependencies and software change impacts on computer processing

Systems, computer program products, and methods are described herein for determining software dependencies and software change impacts on computer processing. The present disclosure is configured to identify at least one computing component within a network environment; identify historical data for the at least one computing component; apply the historical data to a dependency quotient model; generate, by the dependency quotient model, a dependency quotient based on the at least one computing component, the historical data, and a relationship between the at least one computing component and at least one secondary computing component; and generate, based on the dependency quotient, a system architecture interface component, wherein the system architecture interface component comprises data of the at least one computing component and the at least one secondary computing component within the network environment.
Owner:BANK OF AMERICA CORP

A fault location method based on synchronization and cooperation relationship

This invention relates to a fault location method based on synchronization and cooperation relationships. The method includes: calculating suspicious values ​​for different program statements based on the spectrum of program statements within a function, with each program statement corresponding to coverage information; obtaining target coverage information based on multiple suspicious values; constructing a software fault association network based on the target coverage information, synchronization and cooperation relationships between function nodes, and fault correlations between function nodes, along with a software dependency network; constructing a transition matrix based on the software fault association network, assigning corresponding node weights to different function nodes; calculating the latest spectral feature factors based on the node weights and the transition matrix; calculating the latest suspicious value for each of the latest spectral feature factors; and performing fault location based on the latest suspicious value. This application achieves the consideration of interactions between functions in spectral analysis and reduces the number of fault entities with the same suspicious value by incorporating the weights of different test cases.
Owner:NANCHANG HANGKONG UNIVERSITY

Method and system for automated integration of software dependencies based on metapackaging

The present application relates to the technical field of embedded system construction, and particularly relates to a software dependency automatic integration method and system based on meta packaging, wherein the method comprises the following steps: S1, creating a meta packaging framework in an embedded construction system, and defining a construction stage hook through a Makefile file; S2, automatically deploying pre-compiled software packages and shared dependent libraries to a target directory of the construction system through a resource injection script; S3, parsing a metadata file of the pre-compiled software packages, extracting dependency relationship information, and generating a global dependency relationship list based on a directed acyclic graph topological sorting algorithm; S4, using a dependency aggregation script to write the global dependency relationship list to a dependency declaration configuration of the meta packaging. Through implementation of the present application, the problems of dependency sequence disorder and metadata audit failure during integration of an embedded system are solved, and the reliability of system integration is improved, the system construction efficiency is optimized, the security of system construction is enhanced, and the maintainability and expansibility of system construction are improved.
Owner:Shenzhen Jinying Tuolian Technology Co., Ltd.

A dependency-aware software repository compilation scheduling method, system, and medium

This invention discloses a dependency-aware software repository compilation scheduling method, system, and medium. The method includes obtaining a list of software source code from a specified software repository; constructing a compilation relationship graph G of the software source code packages based on the compilation dependency attribute fields of each package in the list; splitting the compilation relationship graph G into multiple subgraphs; determining the compilation order of the software source code packages for each subgraph and constructing an independent compilation chain; and controlling the compilation chains of each subgraph to perform concurrent compilation according to the corresponding compilation order of the software source code packages. This invention aims to eliminate or mitigate software package compilation pauses caused by dependencies and conflicts between packages and improve the compilation efficiency of the software repository by perceiving software dependencies and providing a determined compilation order as guidance.
Owner:NAT UNIV OF DEFENSE TECH

Method for automated software dependency adaptation

A method is provided for adapting, in a server, application software executing on the server to a change in a dependency software component. The server receives a software bundle with application software, source code of the application software, testing software with test scripts and self-adaptation software. The self-adaptation software obtains a changed dependency component and rebuilds the application software with the changed dependency. If the rebuild was unsuccessful, it sends a rebuild failure message to a user. If the rebuild was successful, the testing software tests the rebuilt application. If the testing was unsuccessful, it sends a testing failure message to a user. If the rebuild was successful, the self-adaptation software loads the rebuilt application software, stops execution of the application software, and begins execution of the rebuilt application software.
Owner:T MOBILE INNOVATIONS LLC

An open source component provenance analysis method and system

The application discloses an open source component bloodline analysis method and system, relates to the technical field of software supply chain security, and comprises the following steps: S1, automatically discovering open source components; S2, analyzing software components; S3, open source component fingerprint analysis; S4, generating an SBOM bill of materials; and S5, open source component bloodline analysis. The application realizes comprehensive tracking of a source code data processing process through a cryptographic hash function and a cosine similarity algorithm. When a component is modified, the component can also be quickly identified through a similarity analysis technology. The platform regularly collects file fingerprint features of common open source components, extracts characteristic values in combination with extracted open source software dependency packages, saves the characteristic values for comparison, identifies tampered code details in a jar package, locates open source component risks, and improves controllability and security management of a software deployment package.
Owner:SUNRISEBRO CO LTD

A self-adaptive deployment method and system for a signal creation heterogeneous environment

The present application relates to the technical field of cloud computing platform automation deployment, and particularly relates to a self-adaptive deployment method and system for a heterogeneous environment of a signal creation, and to three major technical bottlenecks of low multi-CPU architecture adaptation efficiency, frequent software dependency conflicts and complex security baseline configuration in the process of localization, and an intelligent heterogeneous computing resource scheduling engine and a dynamic security policy generation mechanism are innovatively proposed. The method comprises: constructing a heterogeneous resource portrait through hardware feature automatic identification technology, and realizing component installation sequence optimization based on a DAG dependency relationship analysis algorithm and Kahn topological sorting; creating an adaptive network security policy, and realizing real-time perception of the target system firewall state through a probe. Compared with the traditional deployment mode, the present application supports cross-architecture compatibility, solves the problem of dependency conflicts, improves the deployment efficiency, and guarantees the consistency and security of the system.
Owner:TONGFANG KNOWLEDGE DIGITAL PUBLISHING TECH CO LTD

Mirror image construction method, system and device for distribution network dispatching misoperation system and medium

The invention discloses a distribution network scheduling misoperation system mirror image construction method, system and device and a medium, and the method comprises the steps: obtaining the demand of a distribution network scheduling misoperation system, and determining the software dependence and environment configuration required by the system; an instruction sequence in the Dockerfile and parameter setting of the instruction sequence are optimized; adding special configuration required by a distribution network scheduling misoperation system to construct a mirror image; and testing and verifying the constructed mirror image, and deploying the verified mirror image. According to the method, software dependence and environment configuration required by the system are determined according to the requirement of the distribution network scheduling misoperation system; the instruction sequence and parameter setting in the Dockerfile are optimized, the system mirror image construction efficiency is improved, and the volume of a constructed mirror image package is reduced; adding special configuration required by a distribution network scheduling misoperation system to construct a mirror image; and the constructed mirror image is tested and verified, so that the requirements of the distribution network scheduling misoperation system are met, and the deployment efficiency and the operation stability of the distribution network scheduling misoperation system are improved.
Owner:GUANGXI POWER GRID CORP

Detection device and detection method

This detection device acquires the source code of software to be monitored and information indicating the type of dependency to be monitored in regard to the software. Next, the detection device generates, according to the type of the dependency to be monitored, a search query for a search for code that may have dependency of the type with the software to be monitored, and uses the search query to search for the code from a repository that stores the source code of the software, using a code search engine. Then, the detection device stores the result of the search in a search result database. Thereafter, the detection device compares the source code of the software to be monitored with the code indicated in the result of the search of the search result database to detect the presence or absence of code having dependency of the type with the software to be monitored.
Owner:NT T INC

Nested build automation for software dependencies

A main build environment may create a container for the main source code and any required utilities when building a software application. This container may be populated with an operating system, a configuration that includes instructions for performing the build, toolchains needed for the build, and / or other utilities. If any dependencies on third-party software modules exist, the build environment may create a new container and import the source code for the software module instead of simply importing the precompiled software modules into the build environment. The new container may similarly include toolchains and a configuration specific to building the software module. The software module may then be built within its separate container to generate an executable artifact that may be uploaded / imported into the main build environment during the main build process. Software dependencies can thus be built as part of the main build process from source code.
Owner:ORACLE INT CORP

Software dependency upgrading method and device, computer equipment, storage medium and product

The invention relates to a software dependency upgrading method and device, computer equipment, a storage medium and a product, and belongs to the technical field of software. The method comprises the steps of obtaining a dynamically updated relational knowledge graph, extracting a corresponding project knowledge sub-graph from the relational knowledge graph based on dependency configuration of a target software project, performing risk analysis on the project knowledge sub-graph by using a graph model, and predicting a risk propagation path of the target software project. The risk propagation path comprises at least one of a vulnerability propagation path and a compatibility fracture path, and generating at least one dependency upgrading strategy for the risk propagation path through a multi-objective optimization algorithm, the optimization objectives of the multi-objective optimization algorithm comprise at least two of the following objectives: minimizing the security risk, maximizing the compatibility confidence and minimizing the upgrading cost; and performing dependency upgrading on the target software project based on the at least one dependency upgrading strategy. Through the method, the automation level, the safety and the overall efficiency of dependency management can be improved.
Owner:CHINA MOBILE M2M +1

Fault positioning method based on synchronization and cooperation relationship

ActiveCN121278453ATransition matricesSoftware fault
The invention relates to a fault positioning method based on a synchronization and cooperation relationship, and the method comprises the steps: calculating suspicious values of different program statements based on the spectrum of the program statements in a function, each program statement corresponding to coverage information; obtaining target coverage information based on the plurality of suspicious values; constructing a software fault association network based on the target coverage information, the synchronization relationship and cooperation relationship between the function nodes and the fault association between the function nodes and a software dependency network; constructing a transfer matrix based on the software fault association network, and endowing different function nodes with corresponding node weights; and calculating a newest spectrum characteristic factor based on the node weight and the transfer matrix, calculating each newest suspicious value based on the newest spectrum characteristic factor, and carrying out fault positioning based on the newest suspicious values. According to the method and the device, interaction between functions is considered in spectral analysis, and the number of fault entities with the same fault suspicious value is reduced by adding the weights of different test cases.
Owner:NANCHANG HANGKONG UNIVERSITY

C / C + + software dependency analysis method in cross-platform transplantation scene

The invention provides a C / C + + software dependency analysis method in a cross-platform transplantation scene, relates to the technical field of computer software, and respectively adopts different methods to carry out dependency analysis on C / C + + software in a source code form and a binary form. When the to-be-detected software is in a binary form, analyzing dynamic segment information of a shared library in the to-be-detected software in real time by pre-establishing a dependency sub-tree knowledge base, matching with an offline dependency sub-tree knowledge base, gradually constructing a dependency sub-tree, and completing the construction of a complete dependency tree; when the to-be-detected software is in a source code form, text content of a software bill of material file is converted through the abstract syntax tree, mapping of a temporary variable and a real value and obtaining of parameters in a dependent introduction statement are completed by traversing nodes of the abstract syntax tree, and the parameter value existing in a variable form is replaced with the real value; the problem that a regular expression can only complete extraction of parameter content and cannot obtain a true value of a variable is solved.
Owner:NORTHEASTERN UNIV CHINA

LLM-Guided Software Dependency Discovery for Accelerated Development

Embodiments automate software discovery and delivery by decoupling repository understanding from change implementation. To aid the product- and technical-discovery phases of the SDLC, a large language model parses source code to produce human-readable technical documentation stored in a documentation store and machine-readable representations comprising vector embeddings linked in a graph store. When product requirements are received via a conversational user interface or a programmatic API, the system generates a change plan. An LLM identifies affected subsystems using graph and similarity queries, composes structured prompts, and conditions automated code transformation tools; communicated through a machine-to-machine orchestration layer (e.g., a Model Context Protocol (MCP) gateway); to generate candidate artifacts. Artifacts are validated by policy gates and packaged as a reviewable change record with documentation, embedding, and graph updates staged in a pre-deployment overlay; upon promotion, the system atomically commits the staged updates. Telemetry from review and deployment informs subsequent planning.
Owner:K7 ATELIER LLC

Identifying Open-Source Software Dependencies in Binary Files

Embodiments are directed to systems and methods for identifying open source software (OSS) required in an application. In one embodiment, a binary file associated with the application is received. The binary file is examined to identify a first library dynamically linked to the application. The first library is examined to identify a second library dynamically linked to the first library, where the second library is not identified in the binary file. The first library is mapped to a first OSS package, and the second library is mapped to a second OSS package. A first OSS license is identified in the first OSS package, and a second OSS license is identified in the second OSS package. Details related to the first OSS license and the second OSS license are extracted from the first and second OSS packages. The details are used to complete an OSS manifest.
Owner:DELL PROD LP

Software dependency analysis method, analysis device, and readable storage medium

The present invention proposes a software dependency analysis method, an analysis device, and a readable storage medium. The software dependency analysis method includes: obtaining multiple dependency reports corresponding to multiple projects, and multiple software packages corresponding to multiple projects; determining the release dependencies of multiple software packages based on the multiple dependency reports; and generating and displaying the release dependency reports of multiple software packages based on the release dependencies. The software dependency analysis method of the present invention can quickly provide insights into the distribution of a specific software package in various projects, as well as the usage of software packages in various projects, and can quickly understand the release dependencies of various software packages. This provides efficient, convenient, and fast guidance for analyzing the dependencies of large-scale projects and supporting RELEASE versions, thereby improving the work efficiency of the matter.
Owner:YONYOU NETWORK TECH CO LTD

Computer system and information processing method

To solve the problem that it is difficult to generate information including dependency of software included in an IT system and to objectively evaluate reliability of the information.SOLUTION: A computer system is connected to an IT system, holds a plurality of pieces of reference information used to specify a dependency relation of software installed in the IT system, acquires a list of software included in the IT system as configuration information, generates structure type configuration information in which the dependency relation of the software included in the IT system is structured using the configuration information and the plurality of pieces of reference information, and calculates reliability indicating reliability of the structure type configuration information based on a type of the reference information used to generate the structure type configuration information.SELECTED DRAWING: Figure 1
Owner:HITACHI LTD