MalGuard: Towards Real-Time, Accurate, and Actionable Detection of Malicious Packages in PyPI Ecosystem
Fuente:
arXiv
Saved in:
| Main Authors: | Gao, Xingan, Sun, Xiaobing, Cao, Sicong, Huang, Kaifeng, Wu, Di, Liu, Xiaolei, Lin, Xingwei, Xiang, Yang |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
CHASE: LLM Agents for Dissecting Malicious PyPI Packages
by: Toda, Takaaki, et al.
Published: (2026)
by: Toda, Takaaki, et al.
Published: (2026)
DySec: A Machine Learning-based Dynamic Analysis for Detecting Malicious Packages in PyPI Ecosystem
by: Mehedi, Sk Tanzir, et al.
Published: (2025)
by: Mehedi, Sk Tanzir, et al.
Published: (2025)
Killing Two Birds with One Stone: Malicious Package Detection in NPM and PyPI using a Single Model of Malicious Behavior Sequence
by: Zhang, Junan, et al.
Published: (2023)
by: Zhang, Junan, et al.
Published: (2023)
eDySec: A Deep Learning-based Explainable Dynamic Analysis Framework for Detecting Malicious Packages in PyPI Ecosystem
by: Mehedi, Sk Tanzir, et al.
Published: (2026)
by: Mehedi, Sk Tanzir, et al.
Published: (2026)
Cutting the Gordian Knot: Detecting Malicious PyPI Packages via a Knowledge-Mining Framework
by: Guo, Wenbo, et al.
Published: (2026)
by: Guo, Wenbo, et al.
Published: (2026)
One Detector Fits All: Robust and Adaptive Detection of Malicious Packages from PyPI to Enterprises
by: Montaruli, Biagio, et al.
Published: (2025)
by: Montaruli, Biagio, et al.
Published: (2025)
SourceBroken: A large-scale analysis on the (un)reliability of SourceRank in the PyPI ecosystem
by: Montaruli, Biagio, et al.
Published: (2025)
by: Montaruli, Biagio, et al.
Published: (2025)
MalTool: Malicious Tool Attacks on LLM Agents
by: Hu, Yuepeng, et al.
Published: (2026)
by: Hu, Yuepeng, et al.
Published: (2026)
Towards Classifying Benign And Malicious Packages Using Machine Learning
by: Nguyen, Thanh-Cong, et al.
Published: (2025)
by: Nguyen, Thanh-Cong, et al.
Published: (2025)
MalGuard
by: ossgraud
Published: (2025)
by: ossgraud
Published: (2025)
Malicious Package Detection using Metadata Information
by: Halder, S., et al.
Published: (2024)
by: Halder, S., et al.
Published: (2024)
MalLoc: Toward Fine-grained Android Malicious Payload Localization via LLMs
by: Sun, Tiezhu, et al.
Published: (2025)
by: Sun, Tiezhu, et al.
Published: (2025)
Unveiling Malicious Logic: Towards a Statement-Level Taxonomy and Dataset for Securing Python Packages
by: Ryan, Ahmed, et al.
Published: (2025)
by: Ryan, Ahmed, et al.
Published: (2025)
MalRAG: A Retrieval-Augmented LLM Framework for Open-set Malicious Traffic Identification
by: Luo, Xiang, et al.
Published: (2025)
by: Luo, Xiang, et al.
Published: (2025)
PotentRegion4MalDetect: Advanced Features from Potential Malicious Regions for Malware Detection
by: Koppanati, Rama Krishna, et al.
Published: (2025)
by: Koppanati, Rama Krishna, et al.
Published: (2025)
MalModel: Hiding Malicious Payload in Mobile Deep Learning Models with Black-box Backdoor Attack
by: Hua, Jiayi, et al.
Published: (2024)
by: Hua, Jiayi, et al.
Published: (2024)
ConfuGuard: Using Metadata to Detect Active and Stealthy Package Confusion Attacks Accurately and at Scale
by: Jiang, Wenxin, et al.
Published: (2025)
by: Jiang, Wenxin, et al.
Published: (2025)
Pack-A-Mal: A Malware Analysis Framework for Open-Source Packages
by: Vu, Duc-Ly, et al.
Published: (2025)
by: Vu, Duc-Ly, et al.
Published: (2025)
Taint-Based Code Slicing for LLMs-based Malicious NPM Package Detection
by: Nguyen, Dang-Khoa, et al.
Published: (2025)
by: Nguyen, Dang-Khoa, et al.
Published: (2025)
DONAPI: Malicious NPM Packages Detector using Behavior Sequence Knowledge Mapping
by: Huang, Cheng, et al.
Published: (2024)
by: Huang, Cheng, et al.
Published: (2024)
An Analysis of Malicious Packages in Open-Source Software in the Wild
by: Zhou, Xiaoyan, et al.
Published: (2024)
by: Zhou, Xiaoyan, et al.
Published: (2024)
RobPI: Robust Private Inference against Malicious Client
by: Xue, Jiaqi, et al.
Published: (2026)
by: Xue, Jiaqi, et al.
Published: (2026)
CrossGuard: Safeguarding MLLMs against Joint-Modal Implicit Malicious Attacks
by: Zhang, Xu, et al.
Published: (2025)
by: Zhang, Xu, et al.
Published: (2025)
Leveraging Large Language Models to Detect npm Malicious Packages
by: Zahan, Nusrat, et al.
Published: (2024)
by: Zahan, Nusrat, et al.
Published: (2024)
PARIS: A Practical, Adaptive Trace-Fetching and Real-Time Malicious Behavior Detection System
by: Wang, Jian, et al.
Published: (2024)
by: Wang, Jian, et al.
Published: (2024)
SoK: Towards Reproducibility for Software Packages in Scripting Language Ecosystems
by: Pohl, Timo, et al.
Published: (2025)
by: Pohl, Timo, et al.
Published: (2025)
Automatically Generating Rules of Malicious Software Packages via Large Language Model
by: Zhang, XiangRui, et al.
Published: (2025)
by: Zhang, XiangRui, et al.
Published: (2025)
Cross-ecosystem categorization: A manual-curation protocol for the categorization of Java Maven libraries along Python PyPI Topics
by: Paramitha, Ranindya, et al.
Published: (2024)
by: Paramitha, Ranindya, et al.
Published: (2024)
JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages
by: Cohen, Avihay
Published: (2025)
by: Cohen, Avihay
Published: (2025)
Assessing LLMs in Malicious Code Deobfuscation of Real-world Malware Campaigns
by: Patsakis, Constantinos, et al.
Published: (2024)
by: Patsakis, Constantinos, et al.
Published: (2024)
MAS-SZZ: Multi-Agentic SZZ Algorithm for Vulnerability-Inducing Commit Identification
by: Cao, Sicong, et al.
Published: (2026)
by: Cao, Sicong, et al.
Published: (2026)
ICON: Intent-Context Coupling for Efficient Multi-Turn Jailbreak Attack
by: Lin, Xingwei, et al.
Published: (2026)
by: Lin, Xingwei, et al.
Published: (2026)
Towards Browser Controls to Protect Cookies from Malicious Extensions
by: Tyler, Liam, et al.
Published: (2024)
by: Tyler, Liam, et al.
Published: (2024)
LeakGuard: Detecting Memory Leaks Accurately and Scalably
by: Liang, Hongliang, et al.
Published: (2025)
by: Liang, Hongliang, et al.
Published: (2025)
AEAS: Actionable Exploit Assessment System
by: Shen, Xiangmin, et al.
Published: (2025)
by: Shen, Xiangmin, et al.
Published: (2025)
Bridging Expert Reasoning and LLM Detection: A Knowledge-Driven Framework for Malicious Packages
by: Guo, Wenbo, et al.
Published: (2026)
by: Guo, Wenbo, et al.
Published: (2026)
Coca: Improving and Explaining Graph Neural Network-Based Vulnerability Detection Systems
by: Cao, Sicong, et al.
Published: (2024)
by: Cao, Sicong, et al.
Published: (2024)
Adversarial Distilled Retrieval-Augmented Guarding Model for Online Malicious Intent Detection
by: Guo, Yihao, et al.
Published: (2025)
by: Guo, Yihao, et al.
Published: (2025)
Malicious Agent Detection for Robust Multi-Agent Collaborative Perception
by: Zhao, Yangheng, et al.
Published: (2023)
by: Zhao, Yangheng, et al.
Published: (2023)
Malicious GenAI Chrome Extensions: Unpacking Data Exfiltration and Malicious Behaviours
by: Seetharam, Shresta B., et al.
Published: (2025)
by: Seetharam, Shresta B., et al.
Published: (2025)
Similar Items
-
CHASE: LLM Agents for Dissecting Malicious PyPI Packages
by: Toda, Takaaki, et al.
Published: (2026) -
DySec: A Machine Learning-based Dynamic Analysis for Detecting Malicious Packages in PyPI Ecosystem
by: Mehedi, Sk Tanzir, et al.
Published: (2025) -
Killing Two Birds with One Stone: Malicious Package Detection in NPM and PyPI using a Single Model of Malicious Behavior Sequence
by: Zhang, Junan, et al.
Published: (2023) -
eDySec: A Deep Learning-based Explainable Dynamic Analysis Framework for Detecting Malicious Packages in PyPI Ecosystem
by: Mehedi, Sk Tanzir, et al.
Published: (2026) -
Cutting the Gordian Knot: Detecting Malicious PyPI Packages via a Knowledge-Mining Framework
by: Guo, Wenbo, et al.
Published: (2026)