Pith. sign in

Paper Citation Record · LEDGER

An Analysis of Malicious Packages in Open-Source Software in the Wild

As of 22 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 2 inbound Pith citation observations for arXiv:2404.04991.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2404.04991 v3

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 2 of 2 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-22T06:32:14.747728+00:00

measured 2 of 2 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-16T10:41:27.336529Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: pith, observed 2026-08-16T10:41:27.365184Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation 005991c4-fc29-412b-9906-ca8340afeb9d · inbound

Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack cites this paper.

Wolves in the Repository: A Software Engineering Analysis of the XZ Utils Supply Chain Attack An Analysis of Malicious Packages in Open-Source Software in the Wild

Reference 20

Resolution
verified exact
local_arxiv, observed 2026-08-16T10:41:27.370470Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-22T06:32:14.747728+00:00.

source=pdf_text observed=2026-08-16T10:41:27.336529Z digest=sha256:9c9b014c47d97f100c8f8e82bf8e8ab2c03160a7c8780326133a51c782415ac2

Observation 143a8739-e484-468a-a1c6-a9aa7098b061 · inbound

ProfMalPlus: Agent-Coordinated Detection of Malicious NPM Packages via Static-Dynamic Analysis Synergy cites this paper.

ProfMalPlus: Agent-Coordinated Detection of Malicious NPM Packages via Static-Dynamic Analysis Synergy An Analysis of Malicious Packages in Open-Source Software in the Wild

Reference 57

Resolution
unresolved
no resolver link, observed 2026-08-02T03:14:41.380241Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-02T03:14:41.380241Z digest=sha256:ddce61460436779468ede7038130d7e52bfde153a1e07c441db0d80252f60f3d