BoostSecurity News, Press & Events

Posts by

Alexis-Maurer Fortin

Under The Radar: Zero-Days in Open Source Build Pipelines

 

TL;DR: Our deep dive into open source projects’ CI/CD systems has revealed that build pipelines can be just as vulnerable as any other link in the software supply chain. We found hundreds of zero days on open source projects’ build pipelines with our detection at scale and responsibly disclosed them. Jump to the Research at Scale section to learn more.

Read More