Product
Trivy
- First Reported
- Sep 30, 2026
- Latest Reported
- Sep 30, 2026
Reported Context (1)
- TeamPCP used each stolen credential to launch the next attack. An incomplete credential rotation after the Trivy breach led to compromises of Checkmarx, LiteLLM, Telnyx and more than 60 npm packages. The damages reached Retrospective: How Malicious Software Updates Poison Development Environments
Malware (7)
Threat Actors (3)
MITRE ATT&CK (5)
Vendors (3)
Products (8)
Industries (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.