The threat actors behind the supply chain attack targeting the popular Trivy scanner are suspected to be conducting follow-on attacks that have led to the compromise of a large number of npm packages with a previously undocumented self-propagating worm dubbed CanisterWorm. The name is a reference to
โกKey InsightsAI analyzingโฆ
I
info@thehackernews.com (The Hacker News)
๐ก
Original Source
The Hacker News
https://thehackernews.com/2026/03/trivy-supply-chain-attack-triggers-self.htmlTags:#security#the-hacker-news
Found this useful? Share it!
Read the Full Story
Continue reading on The Hacker News
Related Stories

๐Security
Fraud Rockets Higher in Mobile-First Latin America
about 23 hours ago

๐Security
Full Sail University to Open IBM Cyber Defense Range Powered by AWS and Cloud Range on Campus
about 24 hours ago

๐Security
Niobium Introduces The Fog
1 day ago

๐Security
Pluralsight Launches SecureReady to Help Organizations Build Job-Ready Cybersecurity Teams
1 day ago
