The repository has collected over 10,000 malicious pypi packages. This dataset is the work of the ASE 2023 paper "An Empirical Study of Malicious Code In PyPI Ecosystem". Of course, we will continue to expand the dataset. Latest update time: 3 Sept. 2026
☆134Sep 3, 2026Updated 3 weeks ago
Alternatives and similar repositories for pypi_malregistry
Users that are interested in pypi_malregistry are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆17Jul 25, 2024Updated 2 years ago
- An open-source dataset of malicious software packages found in the wild.☆381Updated this week
- Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages☆141Oct 5, 2022Updated 3 years ago
- This repository complements our paper by offering the training dataset, the best-performing models utilized in our real-world experiment,…☆22Mar 7, 2025Updated last year
- A repository of reports of malicious packages identified in Open Source package repositories, consumable via the Open Source Vulnerabilit…☆617Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Collection of tools for analyzing open source packages.☆371Jul 31, 2026Updated last month
- GuardDog is a CLI tool to Identify malicious PyPI and npm packages☆1,221Updated this week
- Open Source Package Analysis☆914Updated this week
- ☆32May 1, 2025Updated last year
- A dataset of software supply chain compromises. Please help us maintain it!☆130Sep 16, 2022Updated 4 years ago
- YASA-UAST is an intermediate representation structure for multi-language program analysis. The UAST-Parser parses code from different pro…☆93Sep 16, 2026Updated last week
- My presentation slides☆19Oct 31, 2025Updated 10 months ago
- TensorFlow API analysis tool and malicious model detection tool☆43May 27, 2025Updated last year
- YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆323Updated this week
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- archives for Tongji CTF 2017☆10Oct 25, 2023Updated 2 years ago
- 使用 Docker 一键构建 JDK 源码的 CodeQL 数据库,方便使用 CodeQL 查找 JDK 中的数据。☆26May 14, 2025Updated last year
- Code and dataset for paper C4: Contrastive Cross-Language Code Clone Detection☆30May 24, 2022Updated 4 years ago
- MDG-based static vulnerability scanner specialized in analyzing npm packages and detecting taint-style and prototype pollution vulnerabil…☆27Dec 10, 2025Updated 9 months ago
- Macaron is an extensible supply-chain security analysis framework from Oracle Labs that supports a wide range of build systems and CI/CD …☆211Updated this week
- Static JavaScript Analysis: AST, Control Flow, Data Flow, & Pointer Analysis☆28Feb 26, 2022Updated 4 years ago
- Bundle of security analysis scripts for keras tensorflow models☆16Apr 15, 2024Updated 2 years ago
- A Risk-Based Prioritization Taxonomy for prioritizing CVEs (Common Vulnerabilities and Exposures).☆82May 3, 2024Updated 2 years ago
- ☆51Oct 27, 2024Updated last year
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ODGen is a JavaScript Static Analysis tool to detect multiple types of vulnerabilities in Node.js packages.☆169Jan 29, 2024Updated 2 years ago
- xAST评价体系,让安全工具不再“黑盒”. The xAST evaluation benchmark makes security tools no longer a "black box".☆494May 21, 2026Updated 4 months ago
- JEST: N+1-version Differential Testing of Both JavaScript Engines☆14Jun 1, 2021Updated 5 years ago
- Cybersecurity Ontology (CyberOnto) and Situational Awareness (CyberSA) help teamwork in Cyber Incident Responses, Control, Containment, a…☆11Sep 15, 2022Updated 4 years ago
- ☆13Jun 26, 2023Updated 3 years ago
- A novel and interpretable ML-based approach to classify malware with high accuracy and explain the classification result meanwhile.☆29Nov 23, 2022Updated 3 years ago
- Official writeup for D^3CTF 2025☆19Jun 2, 2025Updated last year
- Corpus set used by DIE☆42May 20, 2020Updated 6 years ago
- ☆50Dec 19, 2020Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- This is a Cheatsheet for CTF Challenges categorized by different Privilege Escalation Methods☆29Aug 21, 2019Updated 7 years ago
- ☆35Dec 16, 2024Updated last year
- A Python pickling decompiler and static analyzer☆670Sep 19, 2026Updated last week
- Android监控器(Activity异常destroy , 隐私政策合规)☆11Nov 18, 2021Updated 4 years ago
- NVD API 2.0 client for CVE information☆14May 15, 2025Updated last year
- Building relation graph of Android APIs to catch the semantics between APIs, and used to enhancing Android malware detectors☆98Sep 23, 2022Updated 4 years ago
- CISA Known Exploited Vulnerabilities Catalog Enrichment☆19Jun 24, 2024Updated 2 years ago