3 ms·
Software supply chain attacks not specific enough?
by cdchn 3y ago
Software supply chain attacks not specific enough?
- lima 3y agoNot in terms of specific threat model.
- computerfriend 3y agoThreat: attacker can commit malicious code to a repository by impersonation. Mitigation: verify commit signatures.