External Publication
Visit Post

Trivy vulnerability scanner breach pushed infostealer via GitHub Actions

Over Security - Cybersecurity news aggregator [Unofficial] March 21, 2026
Source
The Trivy vulnerability scanner was compromised in a supply-chain attack by threat actors known as TeamPCP, which distributed credential-stealing malware through official releases and GitHub Actions.

Discussion in the ATmosphere

Loading comments...