{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2025:WVGIAYYIB6JN7GG6TKLNONIXLU","short_pith_number":"pith:WVGIAYYI","schema_version":"1.0","canonical_sha256":"b54c8063080f92df98de9a96d735175d021ae6137e0062deddbe541f7fd5ab86","source":{"kind":"arxiv","id":"2506.19453","version":1},"attestation_state":"computed","paper":{"title":"FuncVul: An Effective Function Level Vulnerability Detection Model using LLM and Code Chunk","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Muhammad Ejaz Ahmed, Sajal Halder, Seyit Camtepe","submitted_at":"2025-06-24T09:30:40Z","abstract_excerpt":"Software supply chain vulnerabilities arise when attackers exploit weaknesses by injecting vulnerable code into widely used packages or libraries within software repositories. While most existing approaches focus on identifying vulnerable packages or libraries, they often overlook the specific functions responsible for these vulnerabilities. Pinpointing vulnerable functions within packages or libraries is critical, as it can significantly reduce the risks associated with using open-source software. Identifying vulnerable patches is challenging because developers often submit code changes that "},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2506.19453","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","primary_cat":"cs.CR","submitted_at":"2025-06-24T09:30:40Z","cross_cats_sorted":[],"title_canon_sha256":"f0e0e1082d2674a455eddaff9dba57f5f90ec5c3048622e87226989f8eb26921","abstract_canon_sha256":"90e45ff825be2db5d0c60fcb872d6c99fd87e345b9505d5ee092d74a848d1f7c"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T11:26:15.234398Z","signature_b64":"h1FrmAPa+Knt5t8NolR0DGHW08k9+1vW7zzM6keI/HNsZkskwnvesOMGP6cKx/Lc4QL2py5nnO/eMbTPcMTPCQ==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"b54c8063080f92df98de9a96d735175d021ae6137e0062deddbe541f7fd5ab86","last_reissued_at":"2026-07-05T11:26:15.233938Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T11:26:15.233938Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"FuncVul: An Effective Function Level Vulnerability Detection Model using LLM and Code Chunk","license":"http://creativecommons.org/licenses/by-nc-nd/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Muhammad Ejaz Ahmed, Sajal Halder, Seyit Camtepe","submitted_at":"2025-06-24T09:30:40Z","abstract_excerpt":"Software supply chain vulnerabilities arise when attackers exploit weaknesses by injecting vulnerable code into widely used packages or libraries within software repositories. While most existing approaches focus on identifying vulnerable packages or libraries, they often overlook the specific functions responsible for these vulnerabilities. Pinpointing vulnerable functions within packages or libraries is critical, as it can significantly reduce the risks associated with using open-source software. Identifying vulnerable patches is challenging because developers often submit code changes that "},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2506.19453","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2506.19453/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2506.19453","created_at":"2026-07-05T11:26:15.233998+00:00"},{"alias_kind":"arxiv_version","alias_value":"2506.19453v1","created_at":"2026-07-05T11:26:15.233998+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2506.19453","created_at":"2026-07-05T11:26:15.233998+00:00"},{"alias_kind":"pith_short_12","alias_value":"WVGIAYYIB6JN","created_at":"2026-07-05T11:26:15.233998+00:00"},{"alias_kind":"pith_short_16","alias_value":"WVGIAYYIB6JN7GG6","created_at":"2026-07-05T11:26:15.233998+00:00"},{"alias_kind":"pith_short_8","alias_value":"WVGIAYYI","created_at":"2026-07-05T11:26:15.233998+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":2,"internal_anchor_count":0,"sample":[{"citing_arxiv_id":"2606.23697","citing_title":"SemChunk-C: Semantic Segmentation for C Code","ref_index":14,"is_internal_anchor":false},{"citing_arxiv_id":"2508.16419","citing_title":"Can LLMs Find Bugs in Code? An Evaluation from Beginner Errors to Security Vulnerabilities in Python and C++","ref_index":14,"is_internal_anchor":false}]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU","json":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU.json","graph_json":"https://pith.science/api/pith-number/WVGIAYYIB6JN7GG6TKLNONIXLU/graph.json","events_json":"https://pith.science/api/pith-number/WVGIAYYIB6JN7GG6TKLNONIXLU/events.json","paper":"https://pith.science/paper/WVGIAYYI"},"agent_actions":{"view_html":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU","download_json":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU.json","view_paper":"https://pith.science/paper/WVGIAYYI","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2506.19453&json=true","fetch_graph":"https://pith.science/api/pith-number/WVGIAYYIB6JN7GG6TKLNONIXLU/graph.json","fetch_events":"https://pith.science/api/pith-number/WVGIAYYIB6JN7GG6TKLNONIXLU/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU/action/timestamp_anchor","attest_storage":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU/action/storage_attestation","attest_author":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU/action/author_attestation","sign_citation":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU/action/citation_signature","submit_replication":"https://pith.science/pith/WVGIAYYIB6JN7GG6TKLNONIXLU/action/replication_record"}},"created_at":"2026-07-05T11:26:15.233998+00:00","updated_at":"2026-07-05T11:26:15.233998+00:00"}