Skip to main content

Showing 1–3 of 3 results for author: Meyers, J S

Searching in archive cs. Search in all archives.
.
  1. arXiv:2411.11017  [pdf, other

    cs.CR cs.SE

    A Study of Malware Prevention in Linux Distributions

    Authors: Duc-Ly Vu, Trevor Dunlap, Karla Obermeier-Velazquez, Paul Gibert, John Speed Meyers, Santiago Torres-Arias

    Abstract: Malicious attacks on open source software packages are a growing concern. This concern morphed into a panic-inducing crisis after the revelation of the XZ Utils backdoor, which would have provided the attacker with, according to one observer, a "skeleton key" to the internet. This study therefore explores the challenges of preventing and detecting malware in Linux distribution package repositories… ▽ More

    Submitted 25 November, 2024; v1 submitted 17 November, 2024; originally announced November 2024.

    Comments: 14 pages, 3 figures, 11 tables

  2. A Benchmark Comparison of Python Malware Detection Approaches

    Authors: Duc-Ly Vu, Zachary Newman, John Speed Meyers

    Abstract: While attackers often distribute malware to victims via open-source, community-driven package repositories, these repositories do not currently run automated malware detection systems. In this work, we explore the security goals of the repository administrators and the requirements for deployments of such malware scanners via a case study of the Python ecosystem and PyPI repository, which includes… ▽ More

    Submitted 27 September, 2022; originally announced September 2022.

    Comments: 12 pages, 3 figures, 3 tables

  3. arXiv:2201.06040  [pdf

    cs.SI cs.PL

    Social Networks as a Collective Intelligence: An Examination of the Python Ecosystem

    Authors: Thomas Pike, Robert Colter, Mark Bailey, Jackie Kazil, John Speed Meyers

    Abstract: The Python ecosystem represents a global, data rich, technology-enabled network. By analyzing Python's dependency network, its top 14 most imported libraries and cPython (or core Python) libraries, this research finds clear evidence the Python network can be considered a problem solving network. Analysis of the contributor network of the top 14 libraries and cPython reveals emergent specialization… ▽ More

    Submitted 16 January, 2022; originally announced January 2022.

    Comments: 13 pages, 4 figures, 2 tables