Fetching latest headlines…
Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD Secrets
NORTH AMERICA
πŸ‡ΊπŸ‡Έ United Statesβ€’March 20, 2026

Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD Secrets

1 views0 likes0 comments
Originally published byThe Hacker News
Trivy, a popular open-source vulnerability scanner maintained by Aqua Security, was compromised a second time within the span of a month to deliver malware that stole sensitive CI/CD secrets. The latest incident impacted GitHub Actions "aquasecurity/trivy-action" and "aquasecurity/setup-trivy," which are used to scan Docker container images for vulnerabilities and set up GitHub Actions workflow

Comments (0)

Sign in to join the discussion

Be the first to comment!

πŸ‡ΊπŸ‡Έ

United States

NORTH AMERICA

More news from United States