Skip to content
Dev.to1 min read

The Vulnerability Scanner That Became the...

The Story A vulnerability scanner got hacked. Then the hackers used it to poison one of the most popular AI libraries on the planet. That happened last week. Here's what went down: March 19 — TeamPCP compromised Aqua Security's Trivy, one of the most trusted open-source vulnerability scanners in DevSecOps. March 23 — Using stolen credentials, they compromised Checkmarx's KICS GitHub Actions and VS Code extensions. March 24 — Those same credentials gave them access to LiteLLM's CI/CD pipeline. Wh
Read original on dev.to
0
0

Comment

Sign in to join the discussion.

Loading comments…

Related

Get the 10 best reads every Sunday

Curated by AI, voted by readers. Free forever.

Liked this? Start your own feed.

0
0