
Originally published byThe Hacker News
Trivy, a popular open-source vulnerability scanner maintained by Aqua Security, was compromised a second time within the span of a month to deliver malware that stole sensitive CI/CD secrets.
The latest incident impacted GitHub Actions "aquasecurity/trivy-action" and "aquasecurity/setup-trivy," which are used to scan Docker container images for vulnerabilities and set up GitHub Actions workflow
πΊπΈ
More news from United StatesUnited States
NORTH AMERICA
Related News

Open Harness: The Multi-Panel AI Powerhouse Revolutionizing Developer Workflows
3h ago
NASA's Hubble Unexpectedly Catches Comet Breaking Up
3h ago
Firefox Announces Built-In VPN and Other New Features - and Introduces Its New Mascot
3h ago
50% of Consumers Prefer Brands That Avoid GenAI Content
3h ago
Juicier Steaks Soon? The UK Approves Testing of Gene-Edited Cow Feed
3h ago