Ryan Elder
3 Papers
11 Citations
Ryan Elder is an academic researcher. The author has contributed to research in topics: Codebase & Malware. The author has an hindex of 3, co-authored 3 publications.
Chat about Author
Papers
Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages.
Ruian Duan,Omar Alrawi,Ranjita Pai Kasturi,Ryan Elder,Brendan Saltaformaggio,Wenke Lee +5 more
- 01 Jan 2021
TL;DR: A comparative framework to qualitatively assess the functional and security features of package managers for interpreted languages is proposed and well-known program analysis techniques such as metadata, static, and dynamic analysis are applied to study registry abuse.
•Posted Content
Measuring and Preventing Supply Chain Attacks on Package Managers.
TL;DR: A comparative framework to study the package managers for interpreted languages is proposed and a vetting pipeline, MalOSS, is proposed to perform metadata, static and dynamic analysis on packages and flag the suspicious ones and identify security gaps and broken trust in the package manager ecosystem.
•Posted Content
Towards Measuring Supply Chain Attacks on Package Managers for Interpreted Languages
TL;DR: In this paper, a comparative framework is proposed to qualitatively assess the functional and security features of package managers for interpreted languages based on program analysis techniques such as metadata, static, and dynamic analysis to study registry abuse.
7