Skip to content

(THREAT MODELLING REPORT) Supply Chain Attack Vectors #64

Description

@MOMORII
  • Define what a software supply chain attack is.
  • Discuss common attack types relevant to Flutter or app development:
    o Dependency confusion
    o Malicious package injection
    o Compromised maintainers or build tools
    o Tampered CI/CD pipelines
  • Identify which attack vectors are most relevant to your project’s structure.
  • Research and summarize real-world case studies or known incidents.
  • Explain how awareness of these vectors informs your testing and evaluation.
  • Highlight preventative practices (e.g., verified sources, signed releases, isolated builds).

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions