logo

Guidance for detecting, investigating, and defending against the Trivy supply chain compromise

ID: 3988f1cc-4fd7-59c8-b935-fb1469384730

STIX ID: report--3988f1cc-4fd7-59c8-b935-fb1469384730

Feed Name: Microsoft Security

Threat Score
90/100

Date Published: 2026-03-25

Date Updated: 2026-04-28

Author: Microsoft Defender Security Research Team

...
...

Microsoft Defender Security Research reports a supply-chain attack attributed to TeamPCP that compromised Trivy (malicious v0.69.4) and aquasecurity GitHub Actions by force-pushing tags and publishing infected releases; the malware harvested cloud, CI/CD, Kubernetes, SSH, database and other secrets, encrypted them into tpcp.tar.gz and exfiltrated to a typosquatted domain (scan.aquasecurtiy.org). The blog describes attacker techniques (mutable tags, commit impersonation), observed detections and hunting queries, and provides mitigation guidance including pinning actions to SHAs, rotating credentials, and updating to safe Trivy/Action versions.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.