Slopsquatting risks from package name hallucinations in local coding LLMs pose supply chain concerns; a two-layer detector is proposed to counter the issue.
Read the original at arxiv.org→arXiv:2608.23897v1 Announce Type: new Abstract: When a code generating language model fabricates a Python package name, an adversary who has pre-registered that name on PyPI can convert that hallucination into a...
Original headline: "Names Can Hurt: Spotting Slopsquatting Risks Caused by Package Name Hallucinations in Local Coding LLMs"
Coverage timeline
- Aug 26, 04:00 UTC arXiv cs.CL lead source Names Can Hurt: Spotting Slopsquatting Risks Caused by Package Name Hallucinations in Local Coding LLMs