Azure DevOps Blog

DevOps, Git, and Agile updates from the team building Azure DevOps

Let’s Hack a Pipeline: Shared Infrastructure
Let’s Hack a Pipeline: Shared Infrastructure
Welcome back to Let's Hack a Pipeline. We've seen argument injection and source code stealing. This week, we'll wrap up the miniseries with Episode III: a Shared Infrastructure attack. One more time: security is a shared responsibility. The purpose of this series is to showcase some potential pitfalls to help you avoid them. The setup Let's...
Let’s Hack a Pipeline: Stealing Another Repo
Let’s Hack a Pipeline: Stealing Another Repo
We're back with another Let's Hack a Pipeline. Last time, we saw how to create - and prevent - argument injection. In this episode, we'll look at how a malicious user could access source code they shouldn't see. Welcome to Episode II: Stealing Another Repo. (Episode III is now available, too!) As I said before: security is a shared ...