most citedBridging Expert Reasoning and LLM Detection: A Knowledge-Driven Framework for Malicious Packages

1 citations · 1 across the 8 of their papers we have counts for

collaborators

9 papers

cs.CR2026

Cutting the Gordian Knot: Detecting Malicious PyPI Packages via a Knowledge-Mining Framework

Wenbo Guo, Chengwei Liu, Ming Kang +5

The Python Package Index (PyPI) has become a target for malicious actors, yet existing detection tools generate false positive rates of 15-30%, incorrectly flagging one-third of le…

cs.SE20261 cited

Bridging Expert Reasoning and LLM Detection: A Knowledge-Driven Framework for Malicious Packages

Wenbo Guo, Shiwen Song, Jiaxun Guo +5

Open-source ecosystems such as NPM and PyPI are increasingly targeted by supply chain attacks, yet existing detection methods either depend on fragile handcrafted rules or data-dri…

cs.SE2025

Evolaris: A Roadmap to Self-Evolving Software Intelligence Management

Chengwei Liu, Wenbo Guo, Yuxin Zhang +4

In recent years, the landscape of software threats has become significantly more dynamic and distributed. Security vulnerabilities are no longer discovered and shared only through…

cs.SE2025

JC-Finder: Detecting Java Clone-based Third-Party Library by Class-level Tree Analysis

Lida Zhao, Chaofan Li, Yueming Wu +10

While reusing third-party libraries (TPL) facilitates software development, its chaotic management has brought great threats to software maintenance and the unauthorized use of sou…

cs.SE2025

VFArchē: A Dual-Mode Framework for Locating Vulnerable Functions in Open-Source Software

Lyuye Zhang, Jian Zhang, Kaixuan Li +6

Software Composition Analysis (SCA) has become pivotal in addressing vulnerabilities inherent in software project dependencies. In particular, reachability analysis is increasingly…

cs.SE2025

Doctor: Optimizing Container Rebuild Efficiency by Instruction Re-Orchestration

Zhiling Zhu, Tieming Chen, Chengwei Liu +4

Containerization has revolutionized software deployment, with Docker leading the way due to its ease of use and consistent runtime environment. As Docker usage grows, optimizing Do…