Developers Are Victims Too : A Comprehensive Analysis of The VS Code Extension Ecosystem
Fuente:
arXiv
Guardado en:
| Autores principales: | Edirimannage, Shehan, Elvitigala, Charitha, Don, Asitha Kottahachchi Kankanamge, Daluwatta, Wathsara, Wijesekara, Primal, Khalil, Ibrahim |
|---|---|
| Formato: | Preprint |
| Publicado: |
2024
|
| Materias: | |
| Acceso en línea: | |
| Etiquetas: |
Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
|
Ejemplares similares
Federated Unlearning in Edge Networks: A Survey of Fundamentals, Challenges, Practical Applications and Future Directions
por: Ng, Jer Shyuan, et al.
Publicado: (2026)
por: Ng, Jer Shyuan, et al.
Publicado: (2026)
Empirical Analysis of Sri Lankan Mobile Health Ecosystem: A Precursor to an Effective Stakeholder Engagement
por: Thilakarathna, Kenneth, et al.
Publicado: (2024)
por: Thilakarathna, Kenneth, et al.
Publicado: (2024)
An Empirical Study on Remote Code Execution in Machine Learning Model Hosting Ecosystems
por: Siddiq, Mohammed Latif, et al.
Publicado: (2026)
por: Siddiq, Mohammed Latif, et al.
Publicado: (2026)
Does Teaming-Up LLMs Improve Secure Code Generation? A Comprehensive Evaluation with Multi-LLMSecCodeEval
por: Sabir, Bushra, et al.
Publicado: (2026)
por: Sabir, Bushra, et al.
Publicado: (2026)
MegaVul: A C/C++ Vulnerability Dataset with Comprehensive Code Representation
por: Ni, Chao, et al.
Publicado: (2024)
por: Ni, Chao, et al.
Publicado: (2024)
Sandboxing Adoption in Open Source Ecosystems
por: Alhindi, Maysara, et al.
Publicado: (2024)
por: Alhindi, Maysara, et al.
Publicado: (2024)
Evaluating Tool Cloning in Agentic-AI Ecosystems
por: Kim, Taein, et al.
Publicado: (2026)
por: Kim, Taein, et al.
Publicado: (2026)
Cross-Ecosystem Vulnerability Analysis for Python Applications
por: Alexopoulos, Georgios, et al.
Publicado: (2026)
por: Alexopoulos, Georgios, et al.
Publicado: (2026)
Semantic Ranking for Automated Adversarial Technique Annotation in Security Text
por: Kumarasinghe, Udesh, et al.
Publicado: (2024)
por: Kumarasinghe, Udesh, et al.
Publicado: (2024)
Mind the Gap: Evaluating LLMs for High-Level Malicious Package Detection vs. Fine-Grained Indicator Identification
por: Ryan, Ahmed, et al.
Publicado: (2026)
por: Ryan, Ahmed, et al.
Publicado: (2026)
SBOM Generation Tools in the Python Ecosystem: an In-Detail Analysis
por: Cofano, Serena, et al.
Publicado: (2024)
por: Cofano, Serena, et al.
Publicado: (2024)
An Investigation of Patch Porting Practices of the Linux Kernel Ecosystem
por: Li, Xingyu, et al.
Publicado: (2024)
por: Li, Xingyu, et al.
Publicado: (2024)
Leveraging Security Observability to Strengthen Security of Digital Ecosystem Architecture
por: Ramachandran, Renjith
Publicado: (2024)
por: Ramachandran, Renjith
Publicado: (2024)
Tracing Vulnerability Propagation Across Open Source Software Ecosystems
por: Ruohonen, Jukka, et al.
Publicado: (2025)
por: Ruohonen, Jukka, et al.
Publicado: (2025)
A Time Series Analysis of Malware Uploads to Programming Language Ecosystems
por: Ruohonen, Jukka, et al.
Publicado: (2025)
por: Ruohonen, Jukka, et al.
Publicado: (2025)
SoK: Towards Reproducibility for Software Packages in Scripting Language Ecosystems
por: Pohl, Timo, et al.
Publicado: (2025)
por: Pohl, Timo, et al.
Publicado: (2025)
A Multi-Store Privacy Measurement of Virtual Reality App Ecosystem
por: Yan, Chuan, et al.
Publicado: (2025)
por: Yan, Chuan, et al.
Publicado: (2025)
A Ground-Truth-Based Evaluation of Vulnerability Detection Across Multiple Ecosystems
por: Mandl, Peter, et al.
Publicado: (2026)
por: Mandl, Peter, et al.
Publicado: (2026)
Beyond the Protocol: Unveiling Attack Vectors in the Model Context Protocol (MCP) Ecosystem
por: Song, Hao, et al.
Publicado: (2025)
por: Song, Hao, et al.
Publicado: (2025)
Track and Trace: Automatically Uncovering Cross-chain Transactions in the Multi-blockchain Ecosystems
por: Lin, Dan, et al.
Publicado: (2025)
por: Lin, Dan, et al.
Publicado: (2025)
From Generalist to Specialist: Exploring CWE-Specific Vulnerability Detection
por: Atiiq, Syafiq Al, et al.
Publicado: (2024)
por: Atiiq, Syafiq Al, et al.
Publicado: (2024)
A Large-scale Fine-grained Analysis of Packages in Open-Source Software Ecosystems
por: Zhou, Xiaoyan, et al.
Publicado: (2024)
por: Zhou, Xiaoyan, et al.
Publicado: (2024)
Mining the YARA Ecosystem: From Ad-Hoc Sharing to Data-Driven Threat Intelligence
por: Esteban, Dectot--Le Monnier de Gouville, et al.
Publicado: (2026)
por: Esteban, Dectot--Le Monnier de Gouville, et al.
Publicado: (2026)
TREBLE: Fast Software Updates by Creating an Equilibrium in an Active Software Ecosystem of Globally Distributed Stakeholders
por: Yim, Keun Soo, et al.
Publicado: (2024)
por: Yim, Keun Soo, et al.
Publicado: (2024)
WildCode: An Empirical Analysis of Code Generated by ChatGPT
por: Khanmohammadi, Kobra, et al.
Publicado: (2025)
por: Khanmohammadi, Kobra, et al.
Publicado: (2025)
How to Compare the Security of Code Written by Humans to LLM-generated Code
por: Balebako, Rebecca, et al.
Publicado: (2026)
por: Balebako, Rebecca, et al.
Publicado: (2026)
SecCodePRM: A Process Reward Model for Code Security
por: Yu, Weichen, et al.
Publicado: (2026)
por: Yu, Weichen, et al.
Publicado: (2026)
DySec: A Machine Learning-based Dynamic Analysis for Detecting Malicious Packages in PyPI Ecosystem
por: Mehedi, Sk Tanzir, et al.
Publicado: (2025)
por: Mehedi, Sk Tanzir, et al.
Publicado: (2025)
Unsupervised Binary Code Translation with Application to Code Similarity Detection and Vulnerability Discovery
por: Ahmad, Iftakhar, et al.
Publicado: (2024)
por: Ahmad, Iftakhar, et al.
Publicado: (2024)
Gotcha! This Model Uses My Code! Evaluating Membership Leakage Risks in Code Models
por: Yang, Zhou, et al.
Publicado: (2023)
por: Yang, Zhou, et al.
Publicado: (2023)
LLM Security Guard for Code
por: Kavian, Arya, et al.
Publicado: (2024)
por: Kavian, Arya, et al.
Publicado: (2024)
Tracking Down Software Cluster Bombs: A Current State Analysis of the Free/Libre and Open Source Software (FLOSS) Ecosystem
por: Tatschner, Stefan, et al.
Publicado: (2025)
por: Tatschner, Stefan, et al.
Publicado: (2025)
Models Are Codes: Towards Measuring Malicious Code Poisoning Attacks on Pre-trained Model Hubs
por: Zhao, Jian, et al.
Publicado: (2024)
por: Zhao, Jian, et al.
Publicado: (2024)
DeCoMa: Detecting and Purifying Code Dataset Watermarks through Dual Channel Code Abstraction
por: Xiao, Yuan, et al.
Publicado: (2025)
por: Xiao, Yuan, et al.
Publicado: (2025)
VulZoo: A Comprehensive Vulnerability Intelligence Dataset
por: Ruan, Bonan, et al.
Publicado: (2024)
por: Ruan, Bonan, et al.
Publicado: (2024)
Backdoors in Code Summarizers: How Bad Is It?
por: Wang, Chenyu, et al.
Publicado: (2025)
por: Wang, Chenyu, et al.
Publicado: (2025)
Finding Privacy-relevant Source Code
por: Tang, Feiyang, et al.
Publicado: (2024)
por: Tang, Feiyang, et al.
Publicado: (2024)
Similar but Patched Code Considered Harmful -- The Impact of Similar but Patched Code on Recurring Vulnerability Detection and How to Remove Them
por: Tan, Zixuan, et al.
Publicado: (2024)
por: Tan, Zixuan, et al.
Publicado: (2024)
Secure Coding with AI -- From Detection to Repair
por: Belozerov, Vladislav, et al.
Publicado: (2025)
por: Belozerov, Vladislav, et al.
Publicado: (2025)
Following Dragons: Code Review-Guided Fuzzing
por: Luu, Viet Hoang, et al.
Publicado: (2026)
por: Luu, Viet Hoang, et al.
Publicado: (2026)
Ejemplares similares
-
Federated Unlearning in Edge Networks: A Survey of Fundamentals, Challenges, Practical Applications and Future Directions
por: Ng, Jer Shyuan, et al.
Publicado: (2026) -
Empirical Analysis of Sri Lankan Mobile Health Ecosystem: A Precursor to an Effective Stakeholder Engagement
por: Thilakarathna, Kenneth, et al.
Publicado: (2024) -
An Empirical Study on Remote Code Execution in Machine Learning Model Hosting Ecosystems
por: Siddiq, Mohammed Latif, et al.
Publicado: (2026) -
Does Teaming-Up LLMs Improve Secure Code Generation? A Comprehensive Evaluation with Multi-LLMSecCodeEval
por: Sabir, Bushra, et al.
Publicado: (2026) -
MegaVul: A C/C++ Vulnerability Dataset with Comprehensive Code Representation
por: Ni, Chao, et al.
Publicado: (2024)