Broken VECT 2.0 ransomware acts as a data wiper for large files
(bleepingcomputer.com)
1.
2.
GitHub Actions is the weakest link
(news.ycombinator.com)
3.
Checkmarx confirms LAPSUS$ hackers leaked its stolen GitHub data
(bleepingcomputer.com)
4.
5.
How the Trivy supply chain attack harvested credentials from secrets managers
(news.ycombinator.com)
6.
Open source security at Astral
(news.ycombinator.com)
7.
Open Source Security at Astral
(news.ycombinator.com)
8.
CERT-EU: European Commission hack exposes data of 30 EU entities
(bleepingcomputer.com)
9.
Cisco source code stolen in Trivy-linked dev environment breach
(bleepingcomputer.com)
10.
Telnyx package compromised on PyPI
(news.ycombinator.com)
11.
Checkmarx KICS Code Scanner Targeted in Widening Supply Chain Hit
(darkreading.com)
12.
13.
Trivy Supply Chain Attack Targets CI/CD Secrets
(darkreading.com)
14.
Trivy supply-chain attack spreads to Docker, GitHub repos
(bleepingcomputer.com)
15.
Trivy under attack again: Widespread GitHub Actions tag compromise secrets
(news.ycombinator.com)
16.
17.
Trivy vulnerability scanner breach pushed infostealer via GitHub Actions
(bleepingcomputer.com)
18.
Widely used Trivy scanner compromised in ongoing supply-chain attack
(arstechnica.com)
19.
Trivy ecosystem supply chain briefly compromised
(news.ycombinator.com)