Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines

Ziyue Pan, Wenbo Shen, Xingkai Wang, Yutian Yang, Rui Chang, Yao Liu 0007, Chengwei Liu, Yang Liu 0003, Kui Ren 0001. Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines. IEEE Trans. Dependable Sec. Comput., 21(1):403-418, January - February 2024. [doi]

Authors

Ziyue Pan

This author has not been identified. Look up 'Ziyue Pan' in Google

Wenbo Shen

This author has not been identified. Look up 'Wenbo Shen' in Google

Xingkai Wang

This author has not been identified. Look up 'Xingkai Wang' in Google

Yutian Yang

This author has not been identified. Look up 'Yutian Yang' in Google

Rui Chang

This author has not been identified. Look up 'Rui Chang' in Google

Yao Liu 0007

This author has not been identified. Look up 'Yao Liu 0007' in Google

Chengwei Liu

This author has not been identified. Look up 'Chengwei Liu' in Google

Yang Liu 0003

This author has not been identified. Look up 'Yang Liu 0003' in Google

Kui Ren 0001

This author has not been identified. Look up 'Kui Ren 0001' in Google