Skip to content
0.5625
Chimera Difficulty Score
a synthesis of Flesch-Kincaid, Coleman-Liau, SMOG, and Dale-Chall readability metrics
Experts warn of a ‘loud and aggressive’ extortion wave following Trivy hack SAN FRANCISCO — Mandiant is responding to a major, ongoing supply-chain attack involving the compromise of Trivy, a widely used open-source tool from Aqua Security that’s designed to find vulnerabilities and misconfigurations in code repositories. The fallout from the attack spree, which was first detected March 19, is ext...
By compromising Trivy, the attackers gained access to sensitive secrets for many organizations. The extortion wave following this incident poses substantial risk for follow-on compromises and threatening extortion attempts. The cybercriminals involved are known for their aggressive tactics, being loud and demanding. It is unclear how the credentials were stolen, but it's believed they were not stolen from the victim's environment. The incident highlights the vulnerability of supply chains in sof...