Patents
Literature
Patsnap Eureka AI that helps you search prior art, draft patents, and assess FTO risks, powered by patent and scientific literature data.

45 results about "Software repository" patented technology

A software repository, colloquially known as a "repo" for short, is a storage location from which software packages may be retrieved and installed on a computer. These repositories often house metadata about the packages stored in the repository. One can often install or update local software using a given package manager installed on the local machine by accessing the packages stored on the repository through it.

Advanced Cybersecurity System for Real-Time Phishing Detection, Account Takeover Fraud Prevention, and Software Repository Optimization Using Machine Learning Techniques

Systems and processes are disclosed for enhancing cybersecurity and optimizing software repositories through integration of web crawling, web scraping, feature engineering, and advanced machine learning algorithms to detect phishing attempts, prevent account takeover fraud, and identify unused code in repositories. The system collects and refines data from various sources, including transaction logs, customer databases, device details, external data sources, and historical fraud data, to build comprehensive datasets. Feature engineering creates new, meaningful features from the refined data, which are used to train and evaluate machine learning models. The best-performing models are deployed in production to monitor incoming communications and transactions in real-time, flagging suspicious activities and optimizing codebases. This processing ensures timely detection and prevention of security threats while maintaining efficient software development processes. Robust protection is provided against evolving cyber threats and enhances software performance and security through continuous learning and adaptation.
Owner:BANK OF AMERICA CORP

Systems and methods for user-controlled deployment of software updates

Disclosed herein are systems and methods for updating software object instances on a plurality of nodes. An exemplary method may comprise monitoring a software repository for an update to the software object instance installed on the plurality of nodes. In response to detecting the update, the method may comprise initiating installation of the update to the software object instance on a first subset of the plurality of nodes in accordance with an installation schedule. The method may comprise determining whether a functionality or performance issue in the software object instance or a respective node of the first subset was detected subsequent to updating the software object instance. In response to determining that the functionality or performance issue was not detected, the method may comprise updating the software object instance on a second subset of the plurality of nodes in accordance with the installation schedule.
Owner:VIRTUOZZO INT GMBH

Domestic operating system-based automatic deployment method for industrial internet platform

PCT designated stage expiredWO2025138582A1Version controlProgram controlOperational systemThe Internet
Provided are a domestic operating system-based automatic deployment method and system for an industrial internet platform, a computer device, and a computer readable storage medium, relating to the technical field of automatic deployment. The deployment method comprises: installing an automatic deployment tool, and the tool automatically identifying the model and version of a domestic operating system of a current system unit, and automatically installing a basic component of a corresponding version; building a local software repository by means of the tool, the tool automatically identifying a platform deployment mode, and automatically downloading a complete installation package of a platform locally and publishing same to the local software repository, and upon completion, the tool automatically starting a service discovery and registration function; deploying common components of the platform by means of the tool, and the tool automatically identifying the platform deployment mode, and automatically installing specified common components; checking in real time by means of the service discovery and registration function of the tool whether all the common components of the platform have been installed; and the tool using a single image to automatically deploy a plurality of service application services of the platform.
Owner:LUCULENT SMART TECHNOLOGIES CO LTD

Multi-environment cellular network development and testing system

PendingUS20250284489A1Version controlHardware monitoringDistributed computingSoftware repository
Systems, methods, and non-transitory, machine-readable media may facilitate multi-environment cellular network development and testing. A plurality of cloud-based environments that are configured according to an hierarchical order and that allow for development and / or testing of features and / or services with respect to a cellular network may be created. The plurality of cloud-based environments may be communicatively coupled to one or more software repositories via a first plurality of pipelines. The plurality of cloud-based environments may be communicatively coupled to one or more issue monitors via a second plurality of pipelines. The plurality of cloud-based environments may be exposed to service provider systems and allowing the service provider systems to develop and / or test features and / or services with respect to the cellular network within the plurality of cloud-based environments.
Owner:BOOST SUBSCRIBERCO LLC

Techniques for validating a virtual workload signature from a software repository

In some implementations, the device may include detecting a virtual instance deployed in a computing environment, the virtual instance deployed based on a software image. In addition, the device may include detecting an image name of the software image. The device may include accessing an image software repository to retrieve the software image based on the detected image name. Moreover, the device may include initiating validation of the retrieved software image. Also, the device may include initiating a mitigation action on the virtual instance in response to detecting that the retrieved software image is an invalid software image.
Owner:WIZ INC

Method and system for locating compilation conflict source of software repository based on relational graph and medium

The invention discloses a software repository compiling conflict source positioning method and system based on a relational graph and a medium, and the method comprises the following steps: S1, obtaining an input conflict package P and the relational graph of a software repository, the relational graph of the software repository comprising a compiling dependency relationship between software packages in the software repository; s2, determining a dependency ring and a dependency path of the conflict packet P in the relation graph of the software repository; and S3, for a dependency ring and a dependency path of the conflict package P in the relation graph of the software repository, deleting the ready compiled software package to carry out subtraction so as to obtain a final software repository compilation conflict source positioning result. According to the method, the compilation conflict source of the software repository can be quickly and accurately positioned, and the parallel compilation efficiency of software repository construction is improved.
Owner:NAT UNIV OF DEFENSE TECH

Method and system for determining traversal sequence of operating system component relational graph and medium

The invention discloses a method and a system for determining the traversal sequence of an operating system component relational graph and a medium, the method for determining the traversal sequence of the operating system component relational graph comprises the following steps: S1, acquiring an input operating system component relational graph G, the operating system component relational graph G being a non-empty directed graph; and S2, hierarchically deleting leaf nodes in the operating system component relation graph G, and recording sequence information of deleting the leaf nodes to serve as a result of determining the traversal sequence of the operating system component relation graph to be output. The invention aims to ensure that the traversal sequence determination of the component relational graph of the operating system completely meets the characteristics and requirements of software repository compilation sequentialization, and the requirements on computing resources and storage resources are reduced.
Owner:NAT UNIV OF DEFENSE TECH

Techniques for validating a virtual workload signature from a software repository

In some implementations, the device may include detecting a virtual instance deployed in a computing environment, the virtual instance deployed based on a software image. In addition, the device may include detecting an image name of the software image. The device may include accessing an image software repository to retrieve the software image based on the detected image name. Moreover, the device may include initiating validation of the retrieved software image. Also, the device may include initiating a mitigation action on the virtual instance in response to detecting that the retrieved software image is an invalid software image.
Owner:WIZ INC

Software repository compiling environment construction method and system and medium

The invention discloses a software repository compiling environment construction method and system and a medium. The method comprises the steps that a compiling dependency closure graph G is constructed for a software repository; eliminating rings for the compilation-dependent closure graph G by using a dumb node-based progressive ring detection algorithm to obtain a ring-free directed graph GM and a pseudo package set {A #}; traversing the acyclic directed graph GM by using a hierarchical leaf node deletion method, so as to determine a compiling sequence according to a traversing sequence; and compiling and generating a pseudo package according to the pseudo package set {A #}, and compiling the software package corresponding to the node in the acyclic directed graph GM according to the determined compiling sequence, thereby completing the construction of the software repository compiling environment. The method aims at solving the problem of determining the compiling sequence relation of the software repository compiling environment package set, numerous software packages in the software repository compiling environment are compiled and constructed under the determined compiling dependency relation, and the construction efficiency of the software repository compiling environment is improved.
Owner:NAT UNIV OF DEFENSE TECH

Software warehouse management method, system, electronic device, storage medium and program product

Embodiments of the present application provide a software repository management method, system, electronic device, storage medium, and program product, relating to the field of computer technology. The method comprises: receiving a download request sent by a client, wherein the download request is for requesting download of a target software package; in response to the target software package being located in a combined repository, matching the target software package from multiple software repositories in the combined repository according to the priority order of multiple software repositories, wherein the multiple software repositories are associated with each other and each software repositories includes at least one software package; and sending the target software package to the client. The technical solution of the embodiments of the present application can reduce the complexity of maintaining software repositories, ensure the orderliness of the software package matching process, and avoid version conflicts and other issues.
Owner:ALIBABA CLOUD COMPUTING CO LTD

A dependency-aware software repository compilation scheduling method, system, and medium

This invention discloses a dependency-aware software repository compilation scheduling method, system, and medium. The method includes obtaining a list of software source code from a specified software repository; constructing a compilation relationship graph G of the software source code packages based on the compilation dependency attribute fields of each package in the list; splitting the compilation relationship graph G into multiple subgraphs; determining the compilation order of the software source code packages for each subgraph and constructing an independent compilation chain; and controlling the compilation chains of each subgraph to perform concurrent compilation according to the corresponding compilation order of the software source code packages. This invention aims to eliminate or mitigate software package compilation pauses caused by dependencies and conflicts between packages and improve the compilation efficiency of the software repository by perceiving software dependencies and providing a determined compilation order as guidance.
Owner:NAT UNIV OF DEFENSE TECH

Computer-implemented method, computer program product, and computer system for identifying the use of deprecated software source code in software repositories (machine learning-based deprecated software identification)

To provide a computer implementation method, a computer programming product and a computer system that identify use of a non-recommended software source code in a software repository.SOLUTION: An approach that identifies and recommends use of a non-recommended source code in a software repository comprises steps of: analyzing one or more software repositories for a software source code identified as non-recommendation by a machine learning model 502: alerting, in response to identifying the non-recommended software source code, one or more first software developers responsible for maintaining a software source code module using the non-recommended software source code 504; and recommending, to the one or more first software developers, an alternative software source code to be used in the software source code module to replace the non-recommended software source code 506.SELECTED DRAWING: Figure 5
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

System for signing software article

A system for signing a software article is presented. The system comprises a software repository for storing one or more software products, a monitoring unit for monitoring the software repository, a software product creation unit designed to store new software products in the software repository, and a signature unit for signing the software products, wherein the monitoring unit is designed to monitor the software product creation unit (10) and, after a new software product is stored in the software store, to send an activation signal for signing the stored new software product to the signature unit, and wherein the signature unit is designed to sign the new software product in the software store. And signing the stored new software product based on the starting signal. As a result, it is possible to sign the software article after it is created and stored. This has the advantage that the signature can be integrated in a different, also already existing structure for creating a software article, since the signature is not executed during the creation process as in an existing system and thus does not need to be integrated in the creation process itself.
Owner:SIEMENS AG

Managing a federated software repository across multiple devices

The present disclosure provides systems, methods, and computer readable storage devices for managing a federated software repository. A method includes storing, at a first member of a multi-device software repository, at least one file and metadata corresponding to the at least one file. The method includes adding an entry to an event log queue. The entry indicates addition of the at least one file. The method includes sending the metadata corresponding to the at least one file to other members of the multi-device software repository for storage at the other devices. The method includes performing, at a later time from sending the metadata, one or more repository update operations that include sending the at least one file to at least a second member of the multi-device software repository.
Owner:JFROG LTD

Methods, systems, and computer program products for automatically selecting tests for regression testing of software systems using machine learning.

What is provided is a computer-implemented method, system, and computer program product for automatically selecting tests for regression testing of a software system using machine learning. This includes generating a test map that includes at least one of a plurality of tests corresponding to source files. The plurality of tests and at least one source file are associated with a software repository. Furthermore, the method involves determining a defect score for the at least one test based on historical test data; receiving a component criticality score and defect definition corresponding to the source file; generating a key value corresponding to the at least one test based on the defect score, component criticality score, and defect definition; determining a subset of the plurality of tests based on the key value corresponding to the at least one test; and executing the test subset in conjunction with the software repository.
Owner:VISA INTERNATIONAL SERVICE ASSOCIATION

Detecting advanced typosquatting techniques in software repositories using semantic analysis

An untrusted package is detected from a system. A name of the untrusted package is input to a machine learning model, and an embedding vector generated as an output. A pool of candidate neighbors of the name of the untrusted package is determined by inputting the embedding vector into a plurality of models, the plurality of models outputting an identification of the conceptual similarity, and a metric associated with the amount of conceptual similarity. A subset of the pool of candidate neighbors based on the respective metrics is selected. Names of each package of the subset is input to a large language model along with respective metadata associated with each respective package of the subset. It is identified whether one or more packages of the subset are sensitive based on the output of the large language model, and an alert is output for each sensitive package.
Owner:SOCKET INC

Automated software build capacity incorporating code generated in software development environments with varying levels of security

Systems and methods are provided for automatically building software in a secure environment. A system includes a software development environment, having an associated security level. The software development environment generates an encrypted software module containing a software module and a cryptographic hash representing a content of the software module and provides it to a software repository. The software repository, in response to receipt of a build plan, decrypts the encrypted software module to recover the software module and the cryptographic hash representing the content of the software module, generates a new cryptographic hash for the software module, and verifies that the new cryptographic hash matches the cryptographic hash representing the content of the software module. A build environment receives the plurality of software modules from the software repository and generates a software build from the plurality of software modules based upon the build plan.
Owner:NORTHROP GRUMMAN SYSTEMS CORP

Deprecated Software Identifiers Based on Machine Learning

A method for identifying the use of deprecated source code in a software repository and recommending replacements. Parse one or more software repositories for software source code identified as deprecated by a machine learning model. In response to identifying deprecated software source code, warn one or more first software developers responsible for maintaining a software source code module that uses the deprecated software source code; and recommend to the one or more first software developers alternative software source code for use in the software source code module to replace the deprecated software source code.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Method and system for installing Linux operating system based on PXE adaptive hard drive

This invention provides an installation method and system for a Linux operating system based on a PXE-adaptive hard disk driver. The method includes: creating a hard disk driver RPM package software repository; creating a mapping file between hard disk information and its driver RPM packages; updating the path of the hard disk driver RPM package repository on the PXE server via the PXE protocol; automatically detecting and obtaining the hard disk's device type, device ID, and alias in the Live memory system environment; determining whether the target hard disk is supported in the Live memory system environment; configuring the hard disk driver RPM package repository in the Live memory system environment; downloading the mapping file between hard disk information and its driver RPM packages; matching and downloading the hard disk driver RPM package from the PXE server; installing and loading the hard disk driver RPM package in the Live memory system environment; installing the operating system software package according to normal logic in the Linux operating system installer in the Live memory system environment; installing the hard disk driver RPM package on the hard disk file system and updating the kernel module configuration file.
Owner:CHINA TELECOM CLOUD TECH CO LTD

Identifying and monitoring relevant enterprise data stored in software development repositories

One example operation may include selecting one or more terms to query one or more software repositories, querying the one or more of the software repositories for instances of the one or more query terms, identifying one or more domain names included in the one or more software repositories based on the query, and determining one or more relevancy scores corresponding to the one or more public software repositories based on a quantity of identified terms instances and domain names.
Owner:INTERNATIONAL BUSINESS MACHINE CORPORATION

Incubation Hub for Validation and Deployment of Software on a Cloud Platform

A system performs incubation of software platform. The system software components for a software platform configured to run on a target cloud platform. The system selects a cloud platform account from an account pool. The system identifies a cloud provisioning template for running the software platform and extracts information describing deployment of the software platform based on the cloud provisioning template. The system configures the cloud platform account to run the software platform. The system bundles a set of software components including software artifacts, custom tools, and automated custom scripts used for running the software platform in a software repository. The system creates a software platform package based on the set of software components. The system provides the software platform package to a target cloud platform account for deployment and execution of the software platform for the tenant.
Owner:GOLDMAN SACHS & CO LLC

Systems and methods for managing a software repository

A system method of managing a software repository. The method including receiving a dataset comprising a set of computer instructions, retrieving feature-related data from the dataset, determining, by a machine learning model executing on the computing device, a function of the computer instructions based on the feature-related data, and generating a synopsis of the function of the computer instructions. The method can include transmitting the synopsis to a user interface and receiving feedback from a user indicative of whether the synopsis accurately describes the function of the computer instructions. If the feedback indicates that the synopsis accurately describes the function of the computer instructions, the method can include storing the synopsis in a memory of the computing device. If the feedback indicates that the synopsis inaccurately describes the function of the computer instructions, the method can include generating a revised synopsis of the function of the computer instructions.
Owner:CAPITAL ONE SERVICES LLC

Enabling lifecycle management services for heterogeneous cloud resources using blueprints

Techniques described herein relate to a method for provisioning and managing resources on resource providers. The method may include obtaining, by a blueprint orchestrator, a blueprint generation request associated with resource providers (RPs) from a user; in response to obtaining the blueprint generation request: making a determination that the blueprint generation request is associated with lifecycle management (LCM) services; in response to the determination: obtaining resource information associated with the LCM services and the RPs; generating a blueprint based on the resource information and a software repository associated with the RPs; composing RP resources and LCM resources on the RPs based on a generic composition request using the blueprint; and performing LCM operations on the RP resources using the LCM resources and the blueprint.
Owner:DELL PROD LP

Sorting-based open source software security vulnerability patch location method

The present invention provides a method for locating open source software security vulnerability patches based on sorting, specifically comprising: collecting vulnerability and code submission data from a website; extracting vulnerability and code submission similarity features in four dimensions, namely, code line, vulnerability identity, vulnerability repair location, and bag-of-words, using data mining and statistical analysis methods; training a vulnerability domain text semantic encoding module based on a Bert model, and using the semantic encoding module to extract vulnerability semantic features and code submission semantic features; concatenating the vulnerability semantic features and code submission semantic features to form a complete feature set of the vulnerability and code submission; model training; and model fusion using the concept of majority voting. The present invention can extract features from vulnerabilities and code submissions, establish a vulnerability patch submission sorting model, sort code submissions in an open source software repository according to their matching degree with the vulnerability, and effectively reduce the number of code submissions that patch annotators need to review.
Owner:ZHEJIANG UNIV CITY COLLEGE

Testing automation for open standard cloud services applications

A method performed by a processing system including at least one processor includes monitoring a software repository for code changes, detecting a code change in a software instance that is stored in the software repository, generating a container image of the software instance in response to the detecting, creating a container for the container image, wherein the container encapsulates software needed to run a test suite on the software instance, configuring a testing platform for a development environment used to create the software instance, executing the test suite for the software instance by running the software encapsulated in the container on the testing platform, and publishing a test output of the test suite as a human-readable scorecard for the software instance.
Owner:AT&T INTELLECTUAL PROPERTY I L P

Automatic virtual machine pressure testing method and device, medium and electronic equipment

The invention discloses an automatic virtual machine pressure test method. The method comprises the following steps: acquiring a target configuration file required by a virtual machine pressure test; the target configuration file comprises software warehouse information, a pressure test tool list, cloud environment information, virtual machine configuration information, network environment information and pressure test information; uploading a pressure test tool specified by the pressure test tool list to the software repository based on the software repository information; creating at least two groups of test virtual machines in the cloud platform based on the cloud environment information, the virtual machine configuration information and the network environment information, and establishing a pressure test environment for the test virtual machines based on the pressure test information; and under the condition that the pressure test environment is successfully established, calling a pressure test tool based on the pressure test information, performing pressure test on the at least two groups of test virtual machines, and summarizing obtained pressure test results. According to the technical scheme, automation of the pressure test of the virtual machine is achieved, and the reliability and efficiency of the pressure test are improved.
Owner:INDUSTRIAL AND COMMERCIAL BANK OF CHINA

Detecting advanced typosquatting techniques in software repositories using semantic analysis

An untrusted package is detected from a system. A name of the untrusted package is input to a machine learning model, and an embedding vector generated as an output. A pool of candidate neighbors of the name of the untrusted package is determined by inputting the embedding vector into a plurality of models, the plurality of models outputting an identification of the conceptual similarity, and a metric associated with the amount of conceptual similarity. A subset of the pool of candidate neighbors based on the respective metrics is selected. Names of each package of the subset is input to a large language model along with respective metadata associated with each respective package of the subset. It is identified whether one or more packages of the subset are sensitive based on the output of the large language model, and an alert is output for each sensitive package.
Owner:SOCKET INC

Software repository management method and system, electronic equipment, storage medium and program product

The embodiment of the invention provides a software repository management method and system, electronic equipment, a storage medium and a program product, and relates to the technical field of computers.The method comprises the steps that a downloading request sent by a client side is received, and the downloading request is used for requesting to download a target software package; in response to the fact that the target software package is located in the combined warehouse, the target software package is matched from the multiple software warehouses according to the priority sequence of the multiple software warehouses in the combined warehouse, the multiple software warehouses have the incidence relation, and any software warehouse comprises at least one software package; and sending the target software package to a client. According to the technical scheme, the complexity of maintaining the software repository can be reduced, the orderliness of the software package matching process is guaranteed, and the problems of version conflicts and the like are avoided.
Owner:ALIBABA CLOUD COMPUTING CO LTD

Software repository file path coverage conflict detection method and device, equipment and medium

The embodiment of the invention discloses a software repository file path coverage conflict detection method and device, equipment and a medium. The method comprises the steps that software package installation file lists of all to-be-detected software repository are extracted and integrated to form a total installation file list; searching software packages with the same installation file path in the total installation file list and grouping the software packages to form a plurality of path conflict package groups; pairing the software packages contained in each path conflict package group in pairs to form conflict package pairs to be verified; and performing installation verification on the to-be-verified conflict packet pair, and determining whether the to-be-verified conflict packet pair has a file path coverage conflict according to whether the installation is successful. According to the method, the test range is narrowed by combining the files into the total installation file list and searching the same installation file path, and then the software packages are paired, so that the software packages with conflicts can be accurately positioned, the detection precision is improved, the positioning difficulty is reduced, and the file path conflict points can be quickly positioned.
Owner:KYLIN CORP

Generation of software deployment pipeline manifest using software item metadata

Techniques are provided for generation of a software deployment pipeline manifest using software item metadata. One method comprises obtaining software items, requested for inclusion in a software deployment pipeline, and corresponding metadata for at least one of the requested software items, from a software repository; in response to a request to transform a given stage of the software deployment pipeline, generating a manifest for the given stage, wherein the manifest identifies the software items in the given stage and comprises the corresponding metadata for the software items in the given stage; and storing the manifest for the given stage in the software repository. The storage of the software items in the software repository may comprise evaluating, prior to the storage: (i) a presence of vulnerabilities in the software items and (ii) a license review status of the software items.
Owner:DELL PROD LP