A threat actor used the open source security tool to deploy an infostealer into CI/CD workflows and steal cloud credentials, SSH keys, tokens, and other sensitive secrets.
โกKey InsightsAI analyzingโฆ
J
Jai Vijayan
๐ก
Original Source
Dark Reading
https://www.darkreading.com/application-security/trivy-supply-chain-attack-targets-ci-cd-secretsTags:#security#dark-reading
Found this useful? Share it!
Read the Full Story
Continue reading on Dark Reading
Related Stories

๐Security
Fraud Rockets Higher in Mobile-First Latin America
about 11 hours ago

๐Security
Full Sail University to Open IBM Cyber Defense Range Powered by AWS and Cloud Range on Campus
about 12 hours ago

๐Security
Niobium Introduces The Fog
about 12 hours ago

๐Security
Pluralsight Launches SecureReady to Help Organizations Build Job-Ready Cybersecurity Teams
about 13 hours ago
