Awesome CI/CD Attacks
An awesome list of offensive security research, techniques, and resources related to attacking CI/CD systems and software delivery pipelines.
About this tool
Awesome CI/CD Attacks
URL: https://github.com/TupleType/awesome-cicd-attacks#readme
Category: Themed directories
Tags: security, devops, awesome-lists
Overview
Awesome CI/CD Attacks is a curated “awesome list” focused on offensive security research, techniques, and learning resources related to attacking CI/CD systems and software delivery pipelines. It aggregates links and references rather than providing tools or a hosted service.
Features
-
Curated focus on CI/CD offense
Concentrates specifically on attacking CI/CD platforms and software delivery pipelines, rather than general security. -
Offensive security research collection
Gathers research papers, blog posts, talks, and write‑ups demonstrating real‑world CI/CD attack scenarios. -
Techniques and methodologies
Highlights techniques used to compromise build systems, deployment pipelines, and related infrastructure. -
Resource aggregation
Serves as a central directory of learning materials, tools, and references for CI/CD attack surface exploration. -
Community-driven awesome list format
Follows the common "awesome list" style on GitHub, making it easy to browse, contribute, and reference from other repos. -
DevSecOps and supply-chain relevance
Targets the intersection of DevOps and security, especially software supply-chain and pipeline abuse.
Intended Audience
- Security researchers analyzing CI/CD and software supply‑chain risks.
- Red teamers and penetration testers simulating attacks on build and deployment systems.
- DevOps and platform engineers seeking to understand how their pipelines might be abused.
- Educators and learners looking for structured resources on CI/CD offensive techniques.
Pricing
This is an open-source, public GitHub repository and is free to use and browse.
Loading more......
Information
Categories
Tags
Similar Products
6 result(s)An awesome list of security-related software, libraries, documents, and resources. It serves as a comprehensive security directory in the awesome-list ecosystem.
A curated Awesome-style directory of resources focused on application security, including guides, tools, and best practices for securing software applications.
An Awesome directory of resources on packing and unpacking executable formats, including tools and research on executable packing.
An Awesome collection of honeypot resources and tools for building deception traps to study and detect attackers.
An Awesome directory of incident response tools, playbooks, and learning materials for handling and investigating security incidents.
An Awesome collection of resources about lockpicking, covering the theory and practice of opening locks without keys.