Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines

Ziyue Pan, Wenbo Shen, Xingkai Wang, Yutian Yang, Rui Chang, Yao Liu 0007, Chengwei Liu, Yang Liu 0003, Kui Ren 0001. Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines. IEEE Trans. Dependable Sec. Comput., 21(1):403-418, January - February 2024. [doi]

Abstract

Abstract is missing.