🔗 Slopsquatting

🔗 Computer Security 🔗 Computer Security/Computing 🔗 Project-independent assessment

Slopsquatting is a type of cybersquatting. It is the practice of registering a non-existent software package name that a large language model (LLM) may hallucinate in its output, whereby someone unknowingly may copy-paste and install the software package without realizing it is fake. Attempting to install a non-existent package should result in an error, but some have exploited this for their gain in the form of typosquatting.

The name is a portmanteau of "slop" and "typosquatting".

Discussed on