A Deep Dive Into How Open-Source Project Maintainers Review and Resolve Bug Bounty Reports

Jessy Ayala, Steven Ngo, Joshua Garcia

IEEE Symposium on Security and Privacy 2025 · Day 1 · Software Supply Chain Security