Python Import as an Execution Boundary: An Empirical Study of Bugs, Vulnerabilities, and Analysis Gaps
cs.CR
Submitted: 2026-09-13
Updated: 2026-09-13
Code: https://github.com/awen-li/ImportMine
Project page: https://microsoft.github.io/pyright/#/configuration?id=
License: http://arxiv.org/licenses/nonexclusive-distrib/1.0/
Terminology
Sources
- Scalpel: The Python Static Analysis Framework
- A Large-Scale Security-Oriented Static Analysis of Python Packages in PyPI
Related papers
- SoK: AI-Augmented Binary Reversing
- Relaxed Sender Anonymity for CBDC Interbank Settlement: A Zero-Knowledge Approach on Permissioned EVM
- Calibration-Family Overfit: Why Trusted Sabotage Monitors Don't Transfer Across Lineages
- Efficient Fuzzy PSI under One-Sided Assumptions
- Sealing the Audit-Runtime Gap for LLM Skills
- Token Composition: A Graph Based on EVM Logs