logo

Trivy Supply Chain Attack Expands With New Compromised Docker Images

ID: 9d1eb881-4c22-52b9-b67e-1504f89f7e6b

STIX ID: report--9d1eb881-4c22-52b9-b67e-1504f89f7e6b

Feed Name: Infosecurity Magazine (News)

Threat Score
85/100

Date Published: 2026-03-23

Date Updated: 2026-04-22

...
...

Researchers identified additional compromised Trivy Docker images (tags 0.69.5 and 0.69.6) linked to a supply-chain attack that originally targeted version 0.69.4; the malicious artifacts contain TeamPCP-associated credential-stealing components and typosquatted C2 domains, and the incident included GitHub repository tampering via a compromised service account token, affecting CI/CD pipelines and developer environments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.