External Publication
Visit Post

Trivy Hack Spreads Infostealer via Docker, Triggers Worm and Kubernetes Wiper

The Hacker News | #1 Trusted Source for Cybersecurity News [Uno… March 23, 2026
Source
Cybersecurity researchers have uncovered malicious artifacts distributed via Docker Hub following the Trivy supply chain attack, highlighting the widening blast radius across developer environments. The last known clean release of Trivy on Docker Hub is 0.69.3. The malicious versions 0.69.4, 0.69.5, and 0.69.6 have since been removed from the container image library. "New image tags 0.69.5 and

Discussion in the ATmosphere

Loading comments...