Collected research
Attacks on Maven proxy repositories
Studies how attacker-published Maven artifacts can exploit repository managers that proxy public packages into trusted internal environments. The work develops product-specific chains involving stored XSS, XXE, and path traversal and proposes safer proxy handling.
Record
- Researcher
- Michael Stepankin
- Published by
- The GitHub Blog
- Date
In the archive
Related sources
Tags
This page is the archive's own catalogue record. The research is the work of Michael Stepankin, first published at the original source. Preserved copies are kept so the citation survives its host.