TensorFlow CI/CD Flaw Exposed Supply Chain to Poisoning Attacks

Discussion in 'News Aggregator' started by The Hacker News, 18 Jan 2024.

  1. Continuous integration and continuous delivery (CI/CD) misconfigurations discovered in the open-source TensorFlow machine learning framework could have been exploited to orchestrate supply chain attacks. The misconfigurations could be abused by an attacker to "conduct a supply chain compromise of TensorFlow releases on GitHub and PyPi by compromising TensorFlow's build agents via

    Continue reading...
     

Share This Page

Loading...