PyPitfall: Dependency Chaos and Software Supply Chain Vulnerabilities in Python
Fuente:
arXiv
Saved in:
| Main Authors: | Mahon, Jacob, Hou, Chenxi, Yao, Zhihao |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Security Vulnerabilities in Software Supply Chain for Autonomous Vehicles
by: Haque, Md Wasiul, et al.
Published: (2025)
by: Haque, Md Wasiul, et al.
Published: (2025)
Supply Chain Insecurity: Exposing Vulnerabilities in iOS Dependency Management Systems
by: Schmidt, David, et al.
Published: (2026)
by: Schmidt, David, et al.
Published: (2026)
Propagation-Based Vulnerability Impact Assessment for Software Supply Chains
by: Ruan, Bonan, et al.
Published: (2025)
by: Ruan, Bonan, et al.
Published: (2025)
Software Supply Chain Smells: Lightweight Analysis for Secure Dependency Management
by: Schmid, Larissa, et al.
Published: (2026)
by: Schmid, Larissa, et al.
Published: (2026)
Enhancing Software Supply Chain Resilience: Strategy For Mitigating Software Supply Chain Security Risks And Ensuring Security Continuity In Development Lifecycle
by: Akinsola, Ahmed, et al.
Published: (2024)
by: Akinsola, Ahmed, et al.
Published: (2024)
Agentic AI for Autonomous Defense in Software Supply Chain Security: Beyond Provenance to Vulnerability Mitigation
by: Syed, Toqeer Ali, et al.
Published: (2025)
by: Syed, Toqeer Ali, et al.
Published: (2025)
Towards Predicting Multi-Vulnerability Attack Chains in Software Supply Chains from Software Bill of Materials Graphs
by: Baird, Laura, et al.
Published: (2026)
by: Baird, Laura, et al.
Published: (2026)
SoK: Understanding Vulnerabilities in the Large Language Model Supply Chain
by: Wang, Shenao, et al.
Published: (2025)
by: Wang, Shenao, et al.
Published: (2025)
ZTD$_{JAVA}$: Mitigating Software Supply Chain Vulnerabilities via Zero-Trust Dependencies
by: Amusuo, Paschal C., et al.
Published: (2023)
by: Amusuo, Paschal C., et al.
Published: (2023)
Evaluating Software Supply Chain Security in Research Software
by: Hegewald, Richard, et al.
Published: (2025)
by: Hegewald, Richard, et al.
Published: (2025)
Establishing a Baseline of Software Supply Chain Security Task Adoption by Software Organizations
by: Williams, Laurie, et al.
Published: (2025)
by: Williams, Laurie, et al.
Published: (2025)
Finding Software Supply Chain Attack Paths with Logical Attack Graphs
by: Soeiro, Luıs, et al.
Published: (2025)
by: Soeiro, Luıs, et al.
Published: (2025)
GoSurf: Identifying Software Supply Chain Attack Vectors in Go
by: Cesarano, Carmine, et al.
Published: (2024)
by: Cesarano, Carmine, et al.
Published: (2024)
Software Supply Chain Security of Web3
by: Monperrus, Martin
Published: (2025)
by: Monperrus, Martin
Published: (2025)
Operationalizing Research Software for Supply Chain Security
by: Kalu, Kelechi G., et al.
Published: (2026)
by: Kalu, Kelechi G., et al.
Published: (2026)
SynthChain: A Synthetic Benchmark and Forensic Analysis of Advanced and Stealthy Software Supply Chain Attacks
by: Tan, Zhuoran, et al.
Published: (2026)
by: Tan, Zhuoran, et al.
Published: (2026)
SoK: A Defense-Oriented Evaluation of Software Supply Chain Security
by: Ishgair, Eman Abu, et al.
Published: (2024)
by: Ishgair, Eman Abu, et al.
Published: (2024)
Securing the Software Package Supply Chain for Critical Systems
by: Murali, Ritwik, et al.
Published: (2025)
by: Murali, Ritwik, et al.
Published: (2025)
Chain-of-Thought Prompting of Large Language Models for Discovering and Fixing Software Vulnerabilities
by: Nong, Yu, et al.
Published: (2024)
by: Nong, Yu, et al.
Published: (2024)
Dirty-Waters: Detecting Software Supply Chain Smells
by: Liu, Raphina, et al.
Published: (2024)
by: Liu, Raphina, et al.
Published: (2024)
S3C2 Summit 2024-09: Industry Secure Software Supply Chain Summit
by: Rahman, Imranur, et al.
Published: (2025)
by: Rahman, Imranur, et al.
Published: (2025)
An Industry Interview Study of Software Signing for Supply Chain Security
by: Kalu, Kelechi G., et al.
Published: (2024)
by: Kalu, Kelechi G., et al.
Published: (2024)
Software Bill of Materials in Software Supply Chain Security A Systematic Literature Review
by: O'Donoghue, Eric, et al.
Published: (2025)
by: O'Donoghue, Eric, et al.
Published: (2025)
Investigating Security Implications of Automatically Generated Code on the Software Supply Chain
by: Li, Xiaofan, et al.
Published: (2025)
by: Li, Xiaofan, et al.
Published: (2025)
Maven-Hijack: Software Supply Chain Attack Exploiting Packaging Order
by: Reyes, Frank, et al.
Published: (2024)
by: Reyes, Frank, et al.
Published: (2024)
An Empirically Grounded Reference Architecture for Software Supply Chain Metadata Management
by: Tran, Nguyen Khoi, et al.
Published: (2023)
by: Tran, Nguyen Khoi, et al.
Published: (2023)
Casper: Prompt Sanitization for Protecting User Privacy in Web-Based Large Language Models
by: Chong, Chun Jie, et al.
Published: (2024)
by: Chong, Chun Jie, et al.
Published: (2024)
A Comprehensive Study on the Impact of Vulnerable Dependencies on Open-Source Software
by: Kumar, Shree Hari Bittugondanahalli Indra, et al.
Published: (2025)
by: Kumar, Shree Hari Bittugondanahalli Indra, et al.
Published: (2025)
PyFEX: Uncovering Evasive Python-based Threats via Resilient and Exhaustive Path Exploration
by: Wang, Meng, et al.
Published: (2026)
by: Wang, Meng, et al.
Published: (2026)
Cyberattack Detection in Critical Infrastructure and Supply Chains
by: Khapre, Smita
Published: (2025)
by: Khapre, Smita
Published: (2025)
Proactive Software Supply Chain Risk Management Framework (P-SSCRM)
by: Williams, Laurie, et al.
Published: (2024)
by: Williams, Laurie, et al.
Published: (2024)
GoLeash: Mitigating Golang Software Supply Chain Attacks with Runtime Policy Enforcement
by: Cesarano, Carmine, et al.
Published: (2025)
by: Cesarano, Carmine, et al.
Published: (2025)
Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack
by: Przymus, Piotr, et al.
Published: (2025)
by: Przymus, Piotr, et al.
Published: (2025)
SoK: Analysis of Software Supply Chain Security by Establishing Secure Design Properties
by: Okafor, Chinenye, et al.
Published: (2024)
by: Okafor, Chinenye, et al.
Published: (2024)
Information Leakage through Physical Layer Supply Voltage Coupling Vulnerability
by: Sanjaya, Sahan, et al.
Published: (2024)
by: Sanjaya, Sahan, et al.
Published: (2024)
The Art of Hide and Seek: Making Pickle-Based Model Supply Chain Poisoning Stealthy Again
by: Liu, Tong, et al.
Published: (2025)
by: Liu, Tong, et al.
Published: (2025)
ARGO-SLSA: Software Supply Chain Security in Argo Workflows
by: Thariq, Mohomed, et al.
Published: (2025)
by: Thariq, Mohomed, et al.
Published: (2025)
Cross-Ecosystem Vulnerability Analysis for Python Applications
by: Alexopoulos, Georgios, et al.
Published: (2026)
by: Alexopoulos, Georgios, et al.
Published: (2026)
ARMS: A Vision for Actor Reputation Metric Systems in the Open-Source Software Supply Chain
by: Kalu, Kelechi G., et al.
Published: (2025)
by: Kalu, Kelechi G., et al.
Published: (2025)
Towards Robust Detection of Open Source Software Supply Chain Poisoning Attacks in Industry Environments
by: Zheng, Xinyi, et al.
Published: (2024)
by: Zheng, Xinyi, et al.
Published: (2024)
Similar Items
-
Security Vulnerabilities in Software Supply Chain for Autonomous Vehicles
by: Haque, Md Wasiul, et al.
Published: (2025) -
Supply Chain Insecurity: Exposing Vulnerabilities in iOS Dependency Management Systems
by: Schmidt, David, et al.
Published: (2026) -
Propagation-Based Vulnerability Impact Assessment for Software Supply Chains
by: Ruan, Bonan, et al.
Published: (2025) -
Software Supply Chain Smells: Lightweight Analysis for Secure Dependency Management
by: Schmid, Larissa, et al.
Published: (2026) -
Enhancing Software Supply Chain Resilience: Strategy For Mitigating Software Supply Chain Security Risks And Ensuring Security Continuity In Development Lifecycle
by: Akinsola, Ahmed, et al.
Published: (2024)