Fixed Intel
Aggregated IntelIndustry News

Trivy Supply Chain Attack Targets CI/CD Secrets

A threat actor used the open source security tool to deploy an infostealer into CI/CD workflows and steal cloud credentials, SSH keys, tokens, and other sensitive secrets.

FIFixed Intel Team||1 min read|2 Views

Aggregated from Dark Reading

This article was automatically aggregated from an external source. Content may be summarized.

Read Original

Full Analysis

A threat actor used the open source security tool to deploy an infostealer into CI/CD workflows and steal cloud credentials, SSH keys, tokens, and other sensitive secrets.

Source: Dark Reading

Original Source

Dark Reading