Book a demo

Malicious Package Detection Patents: Who Leads, Gaps 2026

Malicious Package Detection Patents: Who Leads, Gaps 2026
Data to 2026-07-31

Malicious Package Detection in Repositories: Patents, Leaders and Where Claim Space Is Still Open

Concentrated at the top. A single leader holds 6 of 34 records, and the top 5 assignees together account for 61.8% of all 34 records in scope. Filings run from zero in 2017 to a peak of 6 in 2023, then continue into a partial 2026 count of 1. With fewer than four complete years remaining once the publication lag is accounted for, a growth rate cannot be reliably computed from this trend.

Filing trend
Complete Incomplete
Filing trend023560201720182019202020212022620232024202512026Most recent year is partial — publication lag means later filings are not yet visible.
34
Published Records
62%
Top-5 Share of All Records
US
Leading Jurisdiction
12
Active Filers Ranked
Top filers · share of all 34 records
  1. 1SONATYPE INC17.6%
  2. 2BOOST SUBSCRIBERCO LLC11.8%
  3. 3KARAMBITAI INC11.8%
  4. 4AMERICAN EXPRESS TRAVEL RELATED SERVICES CO INC11.8%
  5. 5YINWANG INTELLIGENT TECHNOLOGIES CO LTD8.8%
Published by Patsnap Research·

See the full malicious package detection in repositories analysis in Eureka

  • The complete ranking, not just the top five
  • Every IPC branch with its share of the corpus
  • The most-cited records, and where claim space is still thin
Read more about this analysis in Eureka
FAQ

Common questions on this landscape

How many patents exist for malicious package detection in software repositories?+

This landscape identifies 34 published patent records matching the search criteria for malicious package detection, repository code integrity verification, and related mechanisms like install-script analysis and package signature checking, filed between 2015 and the 2026-07-31 data cut-off. That figure covers the specific combination of detection concepts and mechanisms defined in the search string, not every patent that touches software security broadly. Because publication lags filing by roughly 18 months, the true count for 2025 and 2026 filings is understated in current data.

Who are the leading patent holders in malicious package detection?+

The ranking behind this dataset covers 12 companies, with the leading assignee holding 6 of the 34 records in scope and the top 5 combined accounting for 61.8% of the field. This is a concentrated but not monopolized space: the top 10 assignees together reach 94.1% of all records, leaving only a small remainder spread across additional filers. Company-level portfolios should be reviewed directly in a patent search tool before drawing firm freedom-to-operate conclusions.

What patent classes cover malicious package detection technology?+

The dominant IPC subclass is G06F, electric digital data processing, covering 79.4% of the 34 records — most inventions here are framed as data-processing methods for scanning, scoring or comparing packages. H04L, digital information transmission, appears in 38.2% of records, reflecting the network-transport and delivery-verification side of the technology. G06Q and H04W are minority classes at 11.8% and 5.9% respectively, tied to commerce-platform and wireless-specific applications. A single record can carry more than one class, so these percentages add up to more than 100% of the record total.

Disclaimer. This analysis is based on Patsnap Eureka data drawn from a limited snapshot of global patent records and is provided for general information and reference only. Patent data carries inherent limitations — recent filings are under-counted because of publication lag, counts may be on a record or family basis, classification and applicant-name data may contain errors or duplicates, and the underlying search query defines the scope shown — so the analysis may be incomplete or inaccurate and may not reflect the full technology landscape.

Nothing here is an exhaustive prior-art, novelty, freedom-to-operate or validity search, nor does it constitute legal, financial or professional advice, and it should not be relied upon as such. Verify independently and review with qualified patent and legal professionals before acting on it.

Method: Filing trend and technology composition. Derived from a Patsnap search on Malicious Package Detection in Repositories covering 2015–2026, data cut-off 2026-07-31. Counts reflect published records only and shift as new filings publish. Every share divides by all records in scope. Data: Patsnap Eureka. See the full landscape report.

Help us improve this page

Found incorrect or outdated information? Let us know and we'll get it fixed.