Pith. sign in

Paper Citation Record · LEDGER

Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

As of 7 August 2026, this Paper Citation Record lists 0 of 0 outbound references and 8 inbound Pith citation observations for arXiv:2002.01139.

A citation records a reference. It does not transfer a finding from one paper to another.

pith.paper-citation-record.v1
2002.01139 v2

Coverage vector

measured 0 of 0 reference resolution

Typed states for the displayed outbound observations.

Source: paper_references, paper_reference_links

measured 8 of 8 standing notices

One-hop event checks from named stored sources.

Source: scholarly_work_events, retraction_status_cache, observed 2026-08-06T06:34:29.942622+00:00

measured 8 of 8 inbound itemization

Pith citing papers itemized under the disclosed page cap.

Source: paper_references, paper_reference_links, observed 2026-08-07T00:41:17.469971Z

measured 0 of 1 external citation measurements

A source-named dated measurement, never combined with another source.

Source: arxiv_reference, observed 2026-05-20T09:03:10.607255Z

Reference resolution

0 of 0 outbound references displayed

  • verified exact0
  • verified fuzzy0
  • unresolved0
  • parse uncertain0
  • malformed identifier0
  • metadata mismatch0

External citation measurements

No source-named external measurement is stored.

Outbound references

No outbound reference observations are available for this paper version.

Pith citing papers

Observation 6240d4cf-84af-4617-94e7-d08fbd221131 · inbound

Open Source, Open Threats? Investigating Security Challenges in Open-Source Software cites this paper.

Open Source, Open Threats? Investigating Security Challenges in Open-Source Software Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 22

Resolution
unresolved
no resolver link, observed 2026-08-07T00:41:17.469971Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-07T00:41:17.469971Z digest=sha256:8d353e8832d896b9766697b3362ae659cfc75ba3b43853e1a352ddfce09916bb

Observation 1b2bfdcc-8eed-4b13-9bc3-b650609968de · inbound

Threadbox: Sandboxing for Modular Security cites this paper.

Threadbox: Sandboxing for Modular Security Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 4

Resolution
unresolved
no resolver link, observed 2026-08-06T21:38:27.173057Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-06T21:38:27.173057Z digest=sha256:37151f755287340d59f7651d09e758e919eddb68a7ee8b2bf83f92e67280f320

Observation 9e7600a9-f38f-4298-8196-22b93cf3a4a5 · inbound

An Empirical Study of Vulnerable Package Dependencies in LLM Repositories cites this paper.

An Empirical Study of Vulnerable Package Dependencies in LLM Repositories Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 28

Resolution
unresolved
no resolver link, observed 2026-08-05T14:22:34.921518Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-05T14:22:34.921518Z digest=sha256:eb8f465bc030989503694b48ba05c3943845f9e75bb0fa981a55f82d92c28ca0

Observation faec0607-c503-46f8-9a12-9ef74dcf28a8 · inbound

ORCA: Unveiling Obscure Containers In The Wild cites this paper.

ORCA: Unveiling Obscure Containers In The Wild Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
unresolved
no resolver link, observed 2026-08-04T19:20:55.580945Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-08-04T19:20:55.580945Z digest=sha256:768ca3eb5b0e5d98d653802ed70e32ae5fe5a9d67774163ba28fc15c1e473bf9

Observation 1ce4ac46-62c8-46b7-bad6-12a9bb5fe6e5 · inbound

A First Look at the Security Issues in the Model Context Protocol Ecosystem cites this paper.

A First Look at the Security Issues in the Model Context Protocol Ecosystem Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 9

Resolution
verified exact
arxiv_id, observed 2026-05-18T06:12:26.314028Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-18T06:10:58.928119Z digest=sha256:507cbd19d8ea5e0e5fe613dd82c40daa8c1affcdfcc7e8d9570b8428cefb644e

Observation 9287908d-20d1-45e9-9aa8-fce9c6b359d8 · inbound

Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills cites this paper.

Do Skill Descriptions Tell the Truth? Detecting Undisclosed Security Behaviors in Code-Backed LLM Skills Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 13

Resolution
verified exact
arxiv_id, observed 2026-05-14T19:07:51.255301Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-14T19:06:00.332789Z digest=sha256:ec3cf3aeb28ad968b5dbf65c14d9f4d9a0bd29ce50ef4894f3dcc415901b6e52

Observation 31f74490-5056-47d0-ba18-6220a5a86f87 · inbound

Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks cites this paper.

Overeager Coding Agents: Measuring Out-of-Scope Actions on Benign Tasks Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 5

Resolution
verified exact
arxiv_id, observed 2026-05-20T09:03:10.609406Z

Source-reported events for the cited work

No event found in the named queried sources as of 2026-08-06T06:34:29.942622+00:00.

source=pdf_text observed=2026-05-20T08:59:54.715974Z digest=sha256:199ec886662e50349434644fd8a18c67b763fda865431c284495b33b055608bf

Observation 63ecb9f2-f751-4b89-80c2-6201fa77750e · inbound

LLM-Enhanced Hierarchical Heterogeneous Graph Representation Learning for Malicious Python Package Detection cites this paper.

LLM-Enhanced Hierarchical Heterogeneous Graph Representation Learning for Malicious Python Package Detection Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages

Reference 12

Resolution
unresolved
no resolver link, observed 2026-07-12T03:06:24.801039Z

Source-reported events for the cited work

Unavailable: canonical work link unavailable.

source=pdf_text observed=2026-07-12T03:06:24.801039Z digest=sha256:dbc3b4e4fb4c6c5a17fdbdc3f18354a9d053ae9990fe0dc63898260402ebbe4f