Exploiting CI/CD with Style(lint): LOTP Guide
CI/CD is vulnerable toLiving Off the Pipeline(LOTP) attacks via tools like linters, formatters, build, and test toolsāno need to modify workflows. Hacking depends on unexpected code execution, context files, plugins, environment variables...