Trivy Supply Chain Attack Targets Docker and Kubernetes
The Trivy supply-chain attack has expanded, affecting Docker Hub and Kubernetes environments. Hackers are distributing malicious artifacts via Docker Hub, leading to the deployment of infostealers and a worm capable of triggering Kubernetes wiper scripts. This attack highlights significant risks in CI/CD workflows and necessitates immediate review and tightening of supply chain security measures.