#8
Widely used Trivy scanner compromised in ongoing supply-chain attack
The compromise of the widely used Trivy vulnerability scanner has potentially exposed over 200,000 DevOps pipelines, making this one of the most impactful supply-chain attacks this year. Attackers inserted malicious code that evaded detection for 19 days, affecting 8% of scans during that period.
Photos (1)

Comments on "Widely used Trivy scanner compromised in ongoing supply-chain attack"
Have a take on this ranking?
Comments are how the argument actually happens here. Posting one needs a free account — it takes about a minute.
No comments yet.
The first comment sets the terms of the argument.