Diamond Member ThaHaka 0 Posted March 20 Diamond Member Share Posted March 20 This is the hidden content, please Sign In or Sign Up Trivy, a popular open-source vulnerability scanner maintained by Aqua Security, was compromised a second time within the span of a month to deliver malware that stole sensitive CI/CD secrets. The latest incident impacted GitHub Actions "aquasecurity/trivy-action" and "aquasecurity/setup-trivy," which are used to scan Docker container images for vulnerabilities and set up GitHub Actions workflow This is the hidden content, please Sign In or Sign Up 0 Quote Link to comment https://hopzone.eu/forums/topic/305730-h4ckn3wstrivy-security-scanner-github-actions-breached-75-tags-hijacked-to-steal-cicd-secrets/ Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.