Pith. sign in

Paper Citation Record · LEDGER

Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

As of 13 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 10 inbound Pith citation observations for arXiv:2002.01139.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2002.01139 v2

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 10 of 10 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-13T06:32:02.005865+00:00

measured 10 of 10 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-12T11:26:16.929297Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-05-20T09:03:10.607255Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation cf1294ad-a3bc-4314-b819-d1e829d302e4 · inbound

Hidden Data Privacy Breaches in Federated Learning cites this paper.

Hidden Data Privacy Breaches in Federated Learning Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-12T11:26:16.929297Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-12T11:26:16.929297Z digest=sha256:98d1009e8434a4ec24ac25e2f2fe015a800f32feec7f478b63accb28ce62db3b

Observation 473639e0-6caa-44c5-8ded-8f79251d6367 · inbound

A Machine Learning-Based Approach For Detecting Malicious PyPI Packages cites this paper.

A Machine Learning-Based Approach For Detecting Malicious PyPI Packages Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 21

Resolution
unresolved
no resolver link, observed 2026-08-11T20:54:13.458679Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-11T20:54:13.458679Z digest=sha256:bf19ef6714907012b9987fb086595bc67d0fa77243803e658b115bbc290ff476

Observation 6240d4cf-84af-4617-94e7-d08fbd221131 · inbound

Open Source, Open Threats? Investigating Security Challenges in Open-Source Software cites this paper.

Open Source, Open Threats? Investigating Security Challenges in Open-Source Software Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 22

Resolution
unresolved
no resolver link, observed 2026-08-07T00:41:17.469971Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T00:41:17.469971Z digest=sha256:6ef70c92e14dab2c0e965b057b5409dea1f8915f325c2decc2ddcd4d0e0fe993

Observation 1b2bfdcc-8eed-4b13-9bc3-b650609968de · inbound

Threadbox: Sandboxing for Modular Security cites this paper.

Threadbox: Sandboxing for Modular Security Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 4

Resolution
unresolved
no resolver link, observed 2026-08-06T21:38:27.173057Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T21:38:27.173057Z digest=sha256:41e51c1072020d0e9133690e51fbf6cdfd61953bb53e6a4da794fb63a6218874

Observation 9e7600a9-f38f-4298-8196-22b93cf3a4a5 · inbound

An Empirical Study of Vulnerable Package Dependencies in LLM Repositories cites this paper.

An Empirical Study of Vulnerable Package Dependencies in LLM Repositories Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 28

Resolution
unresolved
no resolver link, observed 2026-08-05T14:22:34.921518Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T14:22:34.921518Z digest=sha256:7cf9bd002613aa32ca968d3efe7edd317ae8d6086c63a3ac544c4f7bb62b46ac

Observation faec0607-c503-46f8-9a12-9ef74dcf28a8 · inbound

ORCA: Unveiling Obscure Containers In The Wild cites this paper.

ORCA: Unveiling Obscure Containers In The Wild Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-04T19:20:55.580945Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T19:20:55.580945Z digest=sha256:d74ebda4785dbd8356708cfa905de75db18a5347d5c572d455ee26546e4475d7

Observation 1ce4ac46-62c8-46b7-bad6-12a9bb5fe6e5 · inbound

A First Look at the Security Issues in the Model Context Protocol Ecosystem cites this paper.

A First Look at the Security Issues in the Model Context Protocol Ecosystem Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 9

Resolution
verified exact
arxiv_id, observed 2026-05-18T06:12:26.314028Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-05-18T06:10:58.928119Z digest=sha256:85e32357a4934d37e5f20ff9e802275a6c74c673d70574ca09ecd743b888debd

Observation 9287908d-20d1-45e9-9aa8-fce9c6b359d8 · inbound

Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills cites this paper.

Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
verified exact
arxiv_id, observed 2026-05-14T19:07:51.255301Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-05-14T19:06:00.332789Z digest=sha256:2e819eac3634e5ac854f7a759369b0b49334073ffb1b50f2de5830778276f156

Observation 31f74490-5056-47d0-ba18-6220a5a86f87 · inbound

Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks cites this paper.

Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 5

Resolution
verified exact
arxiv_id, observed 2026-05-20T09:03:10.609406Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-13T06:32:02.005865+00:00.

source=pdf_text observed=2026-05-20T08:59:54.715974Z digest=sha256:3e8b931b7f85a967691671ae32fd7e06ab0465ae314ff5f66c4b9eb9bf0eca0e

Observation 63ecb9f2-f751-4b89-80c2-6201fa77750e · inbound

LLM-Enhanced Hierarchical Heterogeneous Graph Representation Learning for Malicious Python Package Detection cites this paper.

LLM-Enhanced Hierarchical Heterogeneous Graph Representation Learning for Malicious Python Package Detection Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 12

Resolution
unresolved
no resolver link, observed 2026-07-12T03:06:24.801039Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-12T03:06:24.801039Z digest=sha256:82ed5d19fca2ab86cee43360a8d504328734e9abd00d13c9166054a8b2f7d4df