Santiago Torres-Arias
Computer Science · Purdue University West Lafayette
Publications
46
Citations
243
Est. group size
~3
Recurring co-author estimate
Active years
13
Publishing since 2014
Santiago Torres-Arias works on software supply chain security, which covers how software gets built, packaged, distributed, and verified so that malicious tampering can be detected or prevented. His recent work examines topics like malware in Linux distributions, IoT device firmware vulnerabilities, software bill of materials (SBOM, a list of a program's components), and usable systems for verifying who signed a piece of software. Much of this research combines security analysis with attention to real-world usability and adoption.
Publication output has grown substantially over the last decade, rising from occasional papers before 2022 to a peak of around a dozen in 2024, with continued high activity into 2025-2026.
Generated by claude-sonnet-5 from public bibliographic data · Jul 20, 2026
- A Longitudinal Study of Usability in Identity-Based Software Signing
arXiv (Cornell University) · 2026
- A Longitudinal Study of Usability in Identity-Based Software Signing
arXiv (Cornell University) · 2026
- Software Dark Matter: Gazing at Uncharted Files to Navigate SBOM Integrations
arXiv (Cornell University) · 2026
- Panic! At The Distro: A Study of Malware Prevention in LinuxDistributions
SSRN Electronic Journal · 2026
- Panic! At The Distro: A Study of Malware Prevention in LinuxDistributions
SSRN Electronic Journal · 2026
- Trustworthy and Confidential SBOM Exchange
arXiv (Cornell University) · 2025
- SCORED '25: Workshop on Software Supply Chain Offensive Research and Ecosystem Defenses
2025
- Rust for Embedded Systems: Current State and Open Problems
2024
- Should Smart Homes Be Afraid of Evil Maids? : Identifying Vulnerabilities in IoT Device Firmware
2024
- SoK: A Defense-Oriented Evaluation of Software Supply Chain Security
arXiv (Cornell University) · 2024
- A Study of Malware Prevention in Linux Distributions
arXiv (Cornell University) · 2024
- SCORED '24: Workshop on Software Supply Chain Offensive Research and Ecosystem Defenses
2024
- A Viewpoint on Knowing Software: Bill of Materials Quality When You See It
IEEE Security & Privacy · 2023
- A Viewpoint on Software Supply Chain Security: Are We Getting Lost in Translation?
IEEE Security & Privacy · 2023
- Strategies for the integration of software supply chain security in DevSecOps CICD pipelines :
2023
- arXiv (Cornell University)×14
- IEEE Security & Privacy×3
- Journal of Computer Security×2
- Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security×2
- USENIX Security Symposium×2
- Aravind Machiry
Computer Science · Purdue University West Lafayette
- Carter Yagemann
Computer Science · The Ohio State University
- Huaijin Wang
Computer Science · The Ohio State University
- Antonio Bianchi
Computer Science · Purdue University West Lafayette
- Dongyan Xu
Computer Science · Purdue University West Lafayette
This profile was generated automatically from public scholarly data (OpenAlex). Group size and activity levels are estimates derived from co-authorship patterns.
Last updated Jul 20, 2026.
Claim or correct this profile