{"as_of":"2026-08-21T13:45:00Z","caps":{"database_statements":6,"inbound":100,"outbound":100},"context_digest":"sha256:c2e14a971b1400077a51af64325d5c0971e6c6d33e420707af6787fe26cbf908","coverage":[{"denominator":17,"lane":"reference_resolution","note":"Typed states for the displayed outbound observations.","records_observed":17,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-07T13:40:17.300665Z","state":"measured"},{"denominator":19,"lane":"standing_notices","note":"One-hop event checks from named stored sources.","records_observed":19,"source":"scholarly_work_events, retraction_status_cache","source_observed_at":"2026-08-21T06:32:19.484+00:00","state":"measured"},{"denominator":2,"lane":"inbound_itemization","note":"Pith citing papers itemized under the disclosed page cap.","records_observed":2,"source":"paper_references, paper_reference_links","source_observed_at":"2026-08-07T11:02:38.177710Z","state":"measured"},{"denominator":1,"lane":"external_citation_measurements","note":"A source-named dated measurement, never combined with another source.","records_observed":0,"source":"pith","source_observed_at":"2026-08-07T11:02:38.212249Z","state":"measured"}],"external_citation_measurements":[],"inbound":[{"citation":{"cited_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"cited_work":{"arxiv_id":"2505.21263","doi":null,"metadata_source":"pith","pith_arxiv_id":"2505.21263","snapshot_observed_at":"2026-08-07T11:02:38.212249Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","venue":"cs.CR","work_id":"d3d35ddc-8f9e-4d81-ab87-ce03be09d7d2","year":2025},"citing_paper":{"arxiv_id":"2506.03656","last_updated":"2025-06-04T07:47:23Z","snapshot_observed_at":"2026-08-10T14:41:32.727078Z","submitted_at":"2025-06-04T07:47:23Z","title":"Client-Side Zero-Shot LLM Inference for Comprehensive In-Browser URL Analysis","version":1},"reference_index":11,"source":"pdf_text","source_observed_at":"2026-08-07T11:02:38.177710Z"},"links":{"cited_paper":"/paper/2505.21263","citing_paper":"/paper/2506.03656"},"observation_digest":"sha256:958402515a67d0025303c20dac2b0f212c884836c326fcb27bdf5514e02a43ee","observation_id":"df4ffd20-2348-406f-9444-c6222436e5df","resolution":{"observed_at":"2026-08-07T11:02:38.218199Z","resolver_source":"local_arxiv","status":"verified_exact"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":null,"pith_arxiv_id":"2505.21263","snapshot_observed_at":"2026-08-02T22:38:51.580104Z","title":"Javasith: A client-side framework for analyzing potentially malicious extensions in browsers, vs code, and npm packages,","venue":null,"work_id":null,"year":2025},"citing_paper":{"arxiv_id":"2602.16304","last_updated":"2026-07-10T05:52:22Z","snapshot_observed_at":"2026-08-20T04:10:13.662426Z","submitted_at":"2026-02-18T09:36:46Z","title":"An Evaluation of Large Language Models for Detection of Malicious Python Packages","version":3},"reference_index":29,"source":"pdf_text","source_observed_at":"2026-08-02T22:38:51.580104Z"},"links":{"cited_paper":"/paper/2505.21263","citing_paper":"/paper/2602.16304"},"observation_digest":"sha256:dc6926de7f0a279ea0907e20ec89fe51c3060bde5077d54cd422508423e58b32","observation_id":"0e851433-4093-42f3-87f1-77458a274f02","resolution":{"observed_at":"2026-08-02T22:38:51.580104Z","resolver_source":null,"status":"unresolved"},"standing_notice":{"events":[],"reason":"canonical_work_link_unavailable","source_receipts":[],"state":"unavailable"}}],"links":{"evidence":"/evidence","html":"/paper/2505.21263/citation-record","integrity":"/paper/2505.21263/integrity","json":"/paper/2505.21263/citation-record.json","paper":"/paper/2505.21263"},"outbound":[{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:21.194049Z","title":null,"venue":null,"work_id":"beceb08a-009a-4bd2-bf57-da65b0c2b586","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":1,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:15.863882Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:862e0326995f1b6512f41cf76901b58a63ee355e7b58f1471e948cc3f63f6e56","observation_id":"b1c5ef8b-1ec7-40e1-a7b3-1d4e5ea239cf","resolution":{"observed_at":"2026-08-07T13:40:21.247810Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:20.946012Z","title":null,"venue":null,"work_id":"5fee426d-8590-4852-a5d7-0e6f263e2b70","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":2,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:15.942054Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:933bb62e9c42056cc9eb5f52b12d7288eb2742d3c763c462d4d9e633eb7df7ce","observation_id":"ac625161-6f0a-469d-af4c-3b263f554958","resolution":{"observed_at":"2026-08-07T13:40:21.060102Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:20.711212Z","title":null,"venue":null,"work_id":"13231619-92f2-4c4f-988f-e1c8bac1a1be","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":3,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:15.987789Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:f0a955db39feec7437f40d4e2de050a383fc3cffa9d3f991d66d4bbda66bb502","observation_id":"726337cb-f0b9-4a28-95d5-c908549ee0c5","resolution":{"observed_at":"2026-08-07T13:40:20.808518Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:20.463705Z","title":null,"venue":null,"work_id":"f21bbea9-c684-4ae8-b15c-6db203b9f5b3","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":4,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.055649Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:b997fcb7d0f9d5ac1dd67fadb4a4235c3a2af9b0bd091162b8d7bc6e19fa2d99","observation_id":"e973c77b-4c3e-4f98-b2e5-381eacfdae9a","resolution":{"observed_at":"2026-08-07T13:40:20.559158Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:20.296151Z","title":"Cyberhaven Supply Chain Attack Exploiting Browser Ex- tensions","venue":null,"work_id":"d7e167af-0e7d-4172-86f6-d5cb7b6c7c88","year":2024},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":5,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.182224Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:22f5872dad0d0eea284917291351fd77c99b341f28bca73d06f9d99364ce3f0d","observation_id":"66759724-c81e-4b20-9a8b-2eb50b5afe3c","resolution":{"observed_at":"2026-08-07T13:40:20.367558Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:20.114157Z","title":null,"venue":null,"work_id":"cbb7e17e-bde3-49be-b81e-1fe5b97e4be5","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":6,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.274688Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:ea41003c740d5262f2dc44b78ab78a2f8c9eacbacbbaafc610205d1220abaca9","observation_id":"8b66d8cc-9122-414c-bae0-f6406b4e0328","resolution":{"observed_at":"2026-08-07T13:40:20.173917Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:19.928706Z","title":null,"venue":null,"work_id":"8afa9245-c42e-4766-be93-1ace51417f80","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":7,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.419658Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:5028a643ee82e4e2304cb9ef0cb438b0a742bb38e99890489e571c7b36cef347","observation_id":"a8a1a03b-7bdd-4dc1-85be-a4993172b93f","resolution":{"observed_at":"2026-08-07T13:40:20.008187Z","resolver_source":"raw_fallback","status":"unresolved"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:19.744766Z","title":"Malicious VSCode Extensions Infecting Users with Cryp- tominer","venue":null,"work_id":"881a0769-d178-47d7-92e3-a386e5387921","year":2025},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":8,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.588013Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:11f9af58abf78b02f71c64ee261f9201c350bca1f305100e1905b203082cab25","observation_id":"1d30bb93-a13f-4ff4-93aa-6ff2222fa50d","resolution":{"observed_at":"2026-08-07T13:40:19.809973Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:19.562010Z","title":"Extension Runtime Security","venue":null,"work_id":"ccfe5291-c390-4d67-ab4e-84557114133b","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":9,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.681124Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:70e75b63d2c9baecee40a749e1b767808122f2aa9e5779a411032badab33d7c8","observation_id":"9a2b15cd-6851-4e37-872c-b79960e2c8a5","resolution":{"observed_at":"2026-08-07T13:40:19.661770Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:19.304823Z","title":"Malicious Helpers: VSCode Extensions Observed Stealing Sensitive Information","venue":null,"work_id":"ed95b830-2821-4dfe-a375-bda380d57aec","year":2025},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":10,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.788985Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:fba1fca0bad5ebb04cf029741dca2633228d5e745557601fe03032643e5905c0","observation_id":"4d5a23fc-632c-4243-9aab-c5443a8e19af","resolution":{"observed_at":"2026-08-07T13:40:19.400504Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:19.004747Z","title":"Malicious npm Package Leverages Unicode Steganography, Google Calendar as C2 Dropper","venue":null,"work_id":"e4fa79b2-c697-4b5a-8fcf-1e07006f3c2d","year":2025},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":11,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.871234Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:72eb53025fa35073184bb98aa11e6140f6cb03f3c2d70bb72f6dceaf799d8189","observation_id":"d4a7716a-b7e7-4333-a86b-692ef1c49912","resolution":{"observed_at":"2026-08-07T13:40:19.130279Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:18.749427Z","title":"SES stands for fear- less cooperation","venue":null,"work_id":"e2f6e732-9eb4-4c5c-b52e-9835fa3377d8","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":12,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:16.962450Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:b9e0635928308f6c1a54b26778c43f42abf8e61ffafb7010bc36148a0e7e1404","observation_id":"1743b88c-ace1-4789-9bfd-19cd43d1338c","resolution":{"observed_at":"2026-08-07T13:40:18.905970Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:18.431247Z","title":"Web-LLM: Run large language models in your browser","venue":null,"work_id":"062dd00c-c289-44e3-b7cf-cee5804a9d9e","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":13,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:17.013015Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:bcde4e3344b02c139a541ffcbbb56762e17f4d09c70d90b33f9e53d5f0558e1a","observation_id":"63d6fa2b-b61e-49db-a0a3-b849f055ec2e","resolution":{"observed_at":"2026-08-07T13:40:18.564034Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:17.924600Z","title":"RetireJS - Scanner detecting the use of JavaScript libraries with known vul- nerabilities","venue":null,"work_id":"58b97d28-2759-472b-92f4-75ab134d75cc","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":14,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:17.126386Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:0ac164cc83520900c24eb549228ca5e6db59fe1dbaffd55bc565952944bf33ea","observation_id":"e6d0ae9a-3ced-4d9e-b1c6-08c72e2004c9","resolution":{"observed_at":"2026-08-07T13:40:17.997550Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:17.597914Z","title":"Content Security Policy (CSP)","venue":null,"work_id":"98c12aed-80c7-476d-b3f7-2dfaab7d43b0","year":2024},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":15,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:17.229172Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:d13a8bc6b97fa2a3a51c360dacb263d1bc602cdd72403c208508c4d7e404024a","observation_id":"4f5bda61-59f0-4f46-8d6c-f4c856facb7b","resolution":{"observed_at":"2026-08-07T13:40:17.735570Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:17.391859Z","title":"¡iframe¿: The Inline Frame element","venue":null,"work_id":"e0565035-f66a-4c92-b37e-159a76fb8033","year":2024},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":16,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:17.300665Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:4abc6c28c10212a17f0639b0a9a99d2b15c8ae7539b4984b3b0377cad9714b67","observation_id":"fbfdab88-8896-47d0-b4a2-2c73d31bad09","resolution":{"observed_at":"2026-08-07T13:40:17.477375Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}},{"citation":{"cited_paper":null,"cited_work":{"arxiv_id":null,"doi":null,"metadata_source":"raw_reference","pith_arxiv_id":null,"snapshot_observed_at":"2026-08-07T13:40:18.134406Z","title":"Available: https://github.com/mlc-ai/web-llm","venue":null,"work_id":"218c54fe-ae28-44fb-8e64-d25552923435","year":null},"citing_paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages","version":1},"reference_index":2023,"source":"pdf_text","source_observed_at":"2026-08-07T13:40:17.057755Z"},"links":{"citing_paper":"/paper/2505.21263"},"observation_digest":"sha256:74c31ce16865b13d43eca2589cd5e109139d0e0cb1e93724fced2ad1eeacea65","observation_id":"0ee6b957-b13d-463a-9959-6a1d1968c545","resolution":{"observed_at":"2026-08-07T13:40:18.296823Z","resolver_source":"raw_fallback","status":"verified_fuzzy"},"standing_notice":{"events":[],"observation":"No event found in the named queried sources as of 2026-08-21T06:32:19.484+00:00.","reason":null,"source_receipts":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"state":"measured"}}],"paper":{"arxiv_id":"2505.21263","last_updated":"2025-05-27T14:40:25Z","latest_version":1,"primary_category":"cs.CR","snapshot_observed_at":"2026-08-13T06:52:03.530501Z","submitted_at":"2025-05-27T14:40:25Z","title":"JavaSith: A Client-Side Framework for Analyzing Potentially Malicious Extensions in Browsers, VS Code, and NPM Packages"},"reference_resolution":{"displayed":17,"state_counts":{"malformed_identifier":0,"metadata_mismatch":0,"parse_uncertain":0,"unresolved":6,"verified_exact":0,"verified_fuzzy":11},"total_outbound_references":17},"refusal":"A citation records a reference. It does not transfer a finding from one paper to another.","schema":"pith.paper-citation-record.v1","standing_sources":[{"observed_at":"2026-08-21T06:32:19.484+00:00","source":"crossref"},{"observed_at":"2026-08-21T06:32:16.066871+00:00","source":"retraction_watch"}],"thesis":"As of 21 August 2026, this Paper Citation Record lists 17 of 17 outbound references and 2 inbound Pith citation observations for arXiv:2505.21263."}