Skip to main content
Top10Grid
#8

Widely used Trivy scanner compromised in ongoing supply-chain attack

The compromise of the widely used Trivy vulnerability scanner has potentially exposed over 200,000 DevOps pipelines, making this one of the most impactful supply-chain attacks this year. Attackers inserted malicious code that evaded detection for 19 days, affecting 8% of scans during that period.

Share:

Photos (1)

Widely used Trivy scanner compromised in ongoing supply-chain attack

Comments on "Widely used Trivy scanner compromised in ongoing supply-chain attack"

Have a take on this ranking?

Comments are how the argument actually happens here. Posting one needs a free account — it takes about a minute.

No comments yet.

The first comment sets the terms of the argument.