SoK: Taxonomy of Attacks on Open-Source Software Supply Chains | IEEE Conference Publication | IEEE Xplore