SAP / risk-explorer-for-software-supply-chains

A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and other resources. The taxonomy as well as related safeguards can be explored using an interactive visualization tool.
https://sap.github.io/risk-explorer-for-software-supply-chains/
Apache License 2.0
71 stars 14 forks source link

Adding AI package hallucination attack vector #89

Closed piergiorgioladisa closed 1 year ago

piergiorgioladisa commented 1 year ago

As discussed in the related issue, we add the new attack vector related to AI package hallucination. I've added description and associated reference.

@henrikplate @serenaponta