The Hitchhiker's Guide to Malicious Third-Party Dependencies

Piergiorgio Ladisa, Merve Sahin, Serena Elisa Ponta, Marco Rosa, Matias Martinez, Olivier Barais. The Hitchhiker's Guide to Malicious Third-Party Dependencies. In Santiago Torres-Arias, Marcela S. Melara, Laurent Simon, Nikos Vasilakis, Kathleen Moriarty, editors, Proceedings of the 2023 Workshop on Software Supply Chain Offensive Research and Ecosystem Defenses, SCORED 2023, Copenhagen, Denmark, 30 November 2023. pages 65-74, ACM, 2023. [doi]

@inproceedings{LadisaSPRMB23,
  title = {The Hitchhiker's Guide to Malicious Third-Party Dependencies},
  author = {Piergiorgio Ladisa and Merve Sahin and Serena Elisa Ponta and Marco Rosa and Matias Martinez and Olivier Barais},
  year = {2023},
  doi = {10.1145/3605770.3625212},
  url = {https://doi.org/10.1145/3605770.3625212},
  researchr = {https://researchr.org/publication/LadisaSPRMB23},
  cites = {0},
  citedby = {0},
  pages = {65-74},
  booktitle = {Proceedings of the 2023 Workshop on Software Supply Chain Offensive Research and Ecosystem Defenses, SCORED 2023, Copenhagen, Denmark, 30 November 2023},
  editor = {Santiago Torres-Arias and Marcela S. Melara and Laurent Simon and Nikos Vasilakis and Kathleen Moriarty},
  publisher = {ACM},
}