Decoupling Identity from Access: Credential Broker Patterns for Secure CI/CD
Fuente:
arXiv
Saved in:
| Main Author: | Avirneni, Surya Teja |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Establishing Workload Identity for Zero Trust CI/CD: From Secrets to SPIFFE-Based Authentication
by: Avirneni, Surya Teja
Published: (2025)
by: Avirneni, Surya Teja
Published: (2025)
Intent-Aware Authorization for Zero Trust CI/CD
by: Avirneni, Surya Teja
Published: (2025)
by: Avirneni, Surya Teja
Published: (2025)
Identity Control Plane: The Unifying Layer for Zero Trust Infrastructure
by: Avirneni, Surya Teja
Published: (2025)
by: Avirneni, Surya Teja
Published: (2025)
LLMs for Cyber Security: New Opportunities
by: Divakaran, Dinil Mon, et al.
Published: (2024)
by: Divakaran, Dinil Mon, et al.
Published: (2024)
Heimdallr: Characterizing and Detecting LLM-Induced Security Risks in GitHub CI Workflows
by: Ruan, Bonan, et al.
Published: (2026)
by: Ruan, Bonan, et al.
Published: (2026)
A Systematic Literature Review on Continuous Integration and Deployment (CI/CD) for Secure Cloud Computing
by: Saleh, Sabbir M., et al.
Published: (2025)
by: Saleh, Sabbir M., et al.
Published: (2025)
A Universal System for OpenID Connect Sign-ins with Verifiable Credentials and Cross-Device Flow
by: Hoops, Felix, et al.
Published: (2024)
by: Hoops, Felix, et al.
Published: (2024)
A Patient-Centric Blockchain Framework for Secure Electronic Health Record Management: Decoupling Data Storage from Access Control
by: Romel, Tanzim Hossain, et al.
Published: (2025)
by: Romel, Tanzim Hossain, et al.
Published: (2025)
Does Teaming-Up LLMs Improve Secure Code Generation? A Comprehensive Evaluation with Multi-LLMSecCodeEval
by: Sabir, Bushra, et al.
Published: (2026)
by: Sabir, Bushra, et al.
Published: (2026)
SAND: Decoupling Sanitization from Fuzzing for Low Overhead
by: Kong, Ziqiao, et al.
Published: (2024)
by: Kong, Ziqiao, et al.
Published: (2024)
Automated Generation of Accurate Privacy Captions From Android Source Code Using Large Language Models
by: Jain, Vijayanta, et al.
Published: (2026)
by: Jain, Vijayanta, et al.
Published: (2026)
FirmReBugger: A Benchmark Framework for Monolithic Firmware Fuzzers
by: Duong, Mathew, et al.
Published: (2026)
by: Duong, Mathew, et al.
Published: (2026)
Security study based on the Chatgptplugin system: ldentifying Security Vulnerabilities
by: Ren, Ruomai
Published: (2025)
by: Ren, Ruomai
Published: (2025)
Leveraging Security Observability to Strengthen Security of Digital Ecosystem Architecture
by: Ramachandran, Renjith
Published: (2024)
by: Ramachandran, Renjith
Published: (2024)
Security Incentivization: An Empirical Study of how Micropayments Impact Code Security
by: Rass, Stefan, et al.
Published: (2026)
by: Rass, Stefan, et al.
Published: (2026)
Separating Secrets from Placeholders: A Hybrid CNN-CodeBERT Framework for Three-Class Credential Leakage Detection
by: Baby, Maksuda Bilkis, et al.
Published: (2026)
by: Baby, Maksuda Bilkis, et al.
Published: (2026)
A Longitudinal Study of Usability in Identity-Based Software Signing
by: Kalu, Kelechi G., et al.
Published: (2026)
by: Kalu, Kelechi G., et al.
Published: (2026)
SoK: Analysis of Software Supply Chain Security by Establishing Secure Design Properties
by: Okafor, Chinenye, et al.
Published: (2024)
by: Okafor, Chinenye, et al.
Published: (2024)
How Secure is Secure Code Generation? Adversarial Prompts Put LLM Defenses to the Test
by: Tessa, Melissa, et al.
Published: (2026)
by: Tessa, Melissa, et al.
Published: (2026)
Numeric Truncation Security Predicate
by: Mezhuev, Timofey, et al.
Published: (2023)
by: Mezhuev, Timofey, et al.
Published: (2023)
LLM Security Guard for Code
by: Kavian, Arya, et al.
Published: (2024)
by: Kavian, Arya, et al.
Published: (2024)
An Introduction to Adaptive Software Security
by: Nia, Mehran Alidoost
Published: (2023)
by: Nia, Mehran Alidoost
Published: (2023)
Securing Tomorrow's Smart Cities: Investigating Software Security in Internet of Vehicles and Deep Learning Technologies
by: Jain, Ridhi, et al.
Published: (2024)
by: Jain, Ridhi, et al.
Published: (2024)
Give LLMs a Security Course: Securing Retrieval-Augmented Code Generation via Knowledge Injection
by: Lin, Bo, et al.
Published: (2025)
by: Lin, Bo, et al.
Published: (2025)
The Kubernetes Security Landscape: AI-Driven Insights from Developer Discussions
by: Curtis, J. Alexander, et al.
Published: (2024)
by: Curtis, J. Alexander, et al.
Published: (2024)
DiVerify: Hardening Identity-Based Software Signing with Diverse-Context Scopes
by: Okafor, Chinenye, et al.
Published: (2024)
by: Okafor, Chinenye, et al.
Published: (2024)
An Empirical Study on the Security Vulnerabilities of GPTs
by: Wu, Tong, et al.
Published: (2025)
by: Wu, Tong, et al.
Published: (2025)
An Exploratory Study on the Engineering of Security Features
by: Hermann, Kevin, et al.
Published: (2025)
by: Hermann, Kevin, et al.
Published: (2025)
120 Domain-Specific Languages for Security
by: Krausz, Markus, et al.
Published: (2024)
by: Krausz, Markus, et al.
Published: (2024)
A Comparison of Vulnerability Feature Extraction Methods from Textual Attack Patterns
by: Othman, Refat, et al.
Published: (2024)
by: Othman, Refat, et al.
Published: (2024)
Enterprise Identity Integration for AI-Assisted Developer Services: Architecture, Implementation, and Case Study
by: Chinthareddy, Manideep Reddy
Published: (2026)
by: Chinthareddy, Manideep Reddy
Published: (2026)
Secure Coding with AI -- From Detection to Repair
by: Belozerov, Vladislav, et al.
Published: (2025)
by: Belozerov, Vladislav, et al.
Published: (2025)
Software Supply Chain Security of Web3
by: Monperrus, Martin
Published: (2025)
by: Monperrus, Martin
Published: (2025)
A User-centered Security Evaluation of Copilot
by: Asare, Owura, et al.
Published: (2023)
by: Asare, Owura, et al.
Published: (2023)
Operationalizing Research Software for Supply Chain Security
by: Kalu, Kelechi G., et al.
Published: (2026)
by: Kalu, Kelechi G., et al.
Published: (2026)
Fixing Security Vulnerabilities with AI in OSS-Fuzz
by: Zhang, Yuntong, et al.
Published: (2024)
by: Zhang, Yuntong, et al.
Published: (2024)
GView: A Versatile Assistant for Security Researchers
by: Zaharia, Raul, et al.
Published: (2024)
by: Zaharia, Raul, et al.
Published: (2024)
A Survey of Web Application Security Tutorials
by: Chembakottu, Bhagya, et al.
Published: (2026)
by: Chembakottu, Bhagya, et al.
Published: (2026)
Managing Security Evidence in Safety-Critical Organizations
by: Mohamad, Mazen, et al.
Published: (2024)
by: Mohamad, Mazen, et al.
Published: (2024)
BACFuzz: Exposing the Silence on Broken Access Control Vulnerabilities in Web Applications
by: Dharmaadi, I Putu Arya, et al.
Published: (2025)
by: Dharmaadi, I Putu Arya, et al.
Published: (2025)
Similar Items
-
Establishing Workload Identity for Zero Trust CI/CD: From Secrets to SPIFFE-Based Authentication
by: Avirneni, Surya Teja
Published: (2025) -
Intent-Aware Authorization for Zero Trust CI/CD
by: Avirneni, Surya Teja
Published: (2025) -
Identity Control Plane: The Unifying Layer for Zero Trust Infrastructure
by: Avirneni, Surya Teja
Published: (2025) -
LLMs for Cyber Security: New Opportunities
by: Divakaran, Dinil Mon, et al.
Published: (2024) -
Heimdallr: Characterizing and Detecting LLM-Induced Security Risks in GitHub CI Workflows
by: Ruan, Bonan, et al.
Published: (2026)