logo

Secret-based cloud supply-chain attacks: Case study and lessons for security teams

ID: 0fadeb2d-61de-5fab-b43d-ad4796b31da2

STIX ID: report--0fadeb2d-61de-5fab-b43d-ad4796b31da2

Feed Name: Wiz Blog

Date Published: 2022-12-13

Date Updated: 2026-05-01

...
...

This report outlines three overlooked CI/CD supply-chain risk patterns in cloud environments—overprivileged access to container registries, forgotten secrets left in build artifacts, and lateral movement paths between production and internal CI/CD systems—explaining attacker flows and providing mitigations. Recommended defenses include least-privilege controls on registries and Kubernetes service accounts, comprehensive secret scanning across image layers and logs (e.g., with Trufflehog), strong network segmentation and restricted access to CI/CD assets, and hardening SaaS CI/CD with MFA and RBAC.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.