Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines

Ziyue Pan, Wenbo Shen, Xingkai Wang, Yutian Yang, Rui Chang, Yao Liu 0007, Chengwei Liu, Yang Liu 0003, Kui Ren 0001. Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines. IEEE Trans. Dependable Sec. Comput., 21(1):403-418, January - February 2024. [doi]

@article{PanSWYCLLLR24,
  title = {Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD Pipelines},
  author = {Ziyue Pan and Wenbo Shen and Xingkai Wang and Yutian Yang and Rui Chang and Yao Liu 0007 and Chengwei Liu and Yang Liu 0003 and Kui Ren 0001},
  year = {2024},
  month = {January - February},
  doi = {10.1109/TDSC.2023.3253572},
  url = {https://doi.org/10.1109/TDSC.2023.3253572},
  researchr = {https://researchr.org/publication/PanSWYCLLLR24},
  cites = {0},
  citedby = {0},
  journal = {IEEE Trans. Dependable Sec. Comput.},
  volume = {21},
  number = {1},
  pages = {403-418},
}