#aquasecurity — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #aquasecurity, aggregated by home.social.
-
CVE Alert: CVE-2026-33634 - aquasecurity - setup-trivy - https://www.redpacketsecurity.com/cve-alert-cve-2026-33634-aquasecurity-setup-trivy/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33634 #aquasecurity #berriai
-
CVE Alert: CVE-2026-33634 - aquasecurity - setup-trivy - https://www.redpacketsecurity.com/cve-alert-cve-2026-33634-aquasecurity-setup-trivy/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33634 #aquasecurity #berriai
-
CVE Alert: CVE-2026-33634 - aquasecurity - setup-trivy - https://www.redpacketsecurity.com/cve-alert-cve-2026-33634-aquasecurity-setup-trivy/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33634 #aquasecurity #berriai
-
CVE Alert: CVE-2026-33634 - aquasecurity - setup-trivy - https://www.redpacketsecurity.com/cve-alert-cve-2026-33634-aquasecurity-setup-trivy/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33634 #aquasecurity #berriai
-
Now sure how much #AquaSecurity has cost the software industry by not rotating their keys after already being exploited - but at the time of posting there is at least 188 people in an internal channel related to their repos being exposed, and that's just our part of IKEA. I'd estimate for us it's at least €150k-€200k just for today wasted because the entire software industry seems to treat security as 'something to be done' instead of at the heart of everything we do. #trivy #secOps
-
Now sure how much #AquaSecurity has cost the software industry by not rotating their keys after already being exploited - but at the time of posting there is at least 188 people in an internal channel related to their repos being exposed, and that's just our part of IKEA. I'd estimate for us it's at least €150k-€200k just for today wasted because the entire software industry seems to treat security as 'something to be done' instead of at the heart of everything we do. #trivy #secOps
-
Now sure how much #AquaSecurity has cost the software industry by not rotating their keys after already being exploited - but at the time of posting there is at least 188 people in an internal channel related to their repos being exposed, and that's just our part of IKEA. I'd estimate for us it's at least €150k-€200k just for today wasted because the entire software industry seems to treat security as 'something to be done' instead of at the heart of everything we do. #trivy #secOps
-
Now sure how much #AquaSecurity has cost the software industry by not rotating their keys after already being exploited - but at the time of posting there is at least 188 people in an internal channel related to their repos being exposed, and that's just our part of IKEA. I'd estimate for us it's at least €150k-€200k just for today wasted because the entire software industry seems to treat security as 'something to be done' instead of at the heart of everything we do. #trivy #secOps
-
‘CanisterWorm’ Springs Wiper Attack Targeting Iran
https://krebsonsecurity.com/2026/03/canisterworm-springs-wiper-attack-targeting-iran/
#InternetComputerProtocol #Ne'er-Do-WellNews #ALittleSunshine #LatestWarnings #TheComingStorm #CatalinCimpanu #CharlieEriksen #AquaSecurity #CanisterWorm #Ransomware #AssafMorag #TeamPCP #Aikido #Flare #Trivy #ICP
-
‘CanisterWorm’ Springs Wiper Attack Targeting Iran
https://krebsonsecurity.com/2026/03/canisterworm-springs-wiper-attack-targeting-iran/
#InternetComputerProtocol #Ne'er-Do-WellNews #ALittleSunshine #LatestWarnings #TheComingStorm #CatalinCimpanu #CharlieEriksen #AquaSecurity #CanisterWorm #Ransomware #AssafMorag #TeamPCP #Aikido #Flare #Trivy #ICP
-
‘CanisterWorm’ Springs Wiper Attack Targeting Iran
https://krebsonsecurity.com/2026/03/canisterworm-springs-wiper-attack-targeting-iran/
#InternetComputerProtocol #Ne'er-Do-WellNews #ALittleSunshine #LatestWarnings #TheComingStorm #CatalinCimpanu #CharlieEriksen #AquaSecurity #CanisterWorm #Ransomware #AssafMorag #TeamPCP #Aikido #Flare #Trivy #ICP
-
‘CanisterWorm’ Springs Wiper Attack Targeting Iran
https://krebsonsecurity.com/2026/03/canisterworm-springs-wiper-attack-targeting-iran/
#InternetComputerProtocol #Ne'er-Do-WellNews #ALittleSunshine #LatestWarnings #TheComingStorm #CatalinCimpanu #CharlieEriksen #AquaSecurity #CanisterWorm #Ransomware #AssafMorag #TeamPCP #Aikido #Flare #Trivy #ICP
-
https://winbuzzer.com/2026/03/23/trivy-breach-pushed-infostealer-via-github-actions-xcxwbn/
Trivy Breached Twice in a Month via GitHub Actions
#GitHub #GitHubActions #Cybersecurity #Malware #Cybercrime #SecurityBreach #OpenSource #Hackers #npm #Javascript #SoftwareDevelopment #CloudComputing #DataBreaches #Trivy #AquaSecurity #TeamPCP #CanisterWorm
-
https://winbuzzer.com/2026/03/23/trivy-breach-pushed-infostealer-via-github-actions-xcxwbn/
Trivy Breached Twice in a Month via GitHub Actions
#GitHub #GitHubActions #Cybersecurity #Malware #Cybercrime #SecurityBreach #OpenSource #Hackers #npm #Javascript #SoftwareDevelopment #CloudComputing #DataBreaches #Trivy #AquaSecurity #TeamPCP #CanisterWorm
-
https://winbuzzer.com/2026/03/23/trivy-breach-pushed-infostealer-via-github-actions-xcxwbn/
Trivy Breached Twice in a Month via GitHub Actions
#GitHub #GitHubActions #Cybersecurity #Malware #Cybercrime #SecurityBreach #OpenSource #Hackers #npm #Javascript #SoftwareDevelopment #CloudComputing #DataBreaches #Trivy #AquaSecurity #TeamPCP #CanisterWorm
-
https://winbuzzer.com/2026/03/23/trivy-breach-pushed-infostealer-via-github-actions-xcxwbn/
Trivy Breached Twice in a Month via GitHub Actions
#GitHub #GitHubActions #Cybersecurity #Malware #Cybercrime #SecurityBreach #OpenSource #Hackers #npm #Javascript #SoftwareDevelopment #CloudComputing #DataBreaches #Trivy #AquaSecurity #TeamPCP #CanisterWorm
-
🚨 Oh no, not another "supply chain attack"! This time, our heroes, #TeamPCP, have turned Aqua Security's Trivy into a #malware vending machine. 🛒 But don't worry, folks, just a quick #audit will fix everything—because nothing says "secure" like a last-minute scramble. 😂🔒
https://www.wiz.io/blog/trivy-compromised-teampcp-supply-chain-attack #supplychainattack #security #AquaSecurity #HackerNews #ngated -
🚨 Oh no, not another "supply chain attack"! This time, our heroes, #TeamPCP, have turned Aqua Security's Trivy into a #malware vending machine. 🛒 But don't worry, folks, just a quick #audit will fix everything—because nothing says "secure" like a last-minute scramble. 😂🔒
https://www.wiz.io/blog/trivy-compromised-teampcp-supply-chain-attack #supplychainattack #security #AquaSecurity #HackerNews #ngated -
🚨 Oh no, not another "supply chain attack"! This time, our heroes, #TeamPCP, have turned Aqua Security's Trivy into a #malware vending machine. 🛒 But don't worry, folks, just a quick #audit will fix everything—because nothing says "secure" like a last-minute scramble. 😂🔒
https://www.wiz.io/blog/trivy-compromised-teampcp-supply-chain-attack #supplychainattack #security #AquaSecurity #HackerNews #ngated -
🚨 Oh no, not another "supply chain attack"! This time, our heroes, #TeamPCP, have turned Aqua Security's Trivy into a #malware vending machine. 🛒 But don't worry, folks, just a quick #audit will fix everything—because nothing says "secure" like a last-minute scramble. 😂🔒
https://www.wiz.io/blog/trivy-compromised-teampcp-supply-chain-attack #supplychainattack #security #AquaSecurity #HackerNews #ngated -
Trivy ecosystem supply chain briefly compromised
https://github.com/aquasecurity/trivy/security/advisories/GHSA-69fq-xp46-6x23
#HackerNews #Trivy #Ecosystem #Supply #Chain #Compromise #Cybersecurity #Vulnerability #SupplyChainSecurity #AquaSecurity
-
Trivy ecosystem supply chain briefly compromised
https://github.com/aquasecurity/trivy/security/advisories/GHSA-69fq-xp46-6x23
#HackerNews #Trivy #Ecosystem #Supply #Chain #Compromise #Cybersecurity #Vulnerability #SupplyChainSecurity #AquaSecurity
-
Trivy ecosystem supply chain briefly compromised
https://github.com/aquasecurity/trivy/security/advisories/GHSA-69fq-xp46-6x23
#HackerNews #Trivy #Ecosystem #Supply #Chain #Compromise #Cybersecurity #Vulnerability #SupplyChainSecurity #AquaSecurity
-
Trivy ecosystem supply chain briefly compromised
https://github.com/aquasecurity/trivy/security/advisories/GHSA-69fq-xp46-6x23
#HackerNews #Trivy #Ecosystem #Supply #Chain #Compromise #Cybersecurity #Vulnerability #SupplyChainSecurity #AquaSecurity
-
Hackers have compromised Trivy, a widely used open-source vulnerability scanner with 33,200 GitHub stars. The supply chain attack affected 75 trivy-action tags, allowing attackers to steal GitHub tokens, cloud credentials, SSH keys and Kubernetes tokens from developer pipelines. Users should rotate all secrets immediately. https://arstechnica.com/security/2026/03/widely-used-trivy-scanner-compromised-in-ongoing-supply-chain-attack/ #AIagent #AI #GenAI #Security #AquaSecurity #Trivy
-
Hackers have compromised Trivy, a widely used open-source vulnerability scanner with 33,200 GitHub stars. The supply chain attack affected 75 trivy-action tags, allowing attackers to steal GitHub tokens, cloud credentials, SSH keys and Kubernetes tokens from developer pipelines. Users should rotate all secrets immediately. https://arstechnica.com/security/2026/03/widely-used-trivy-scanner-compromised-in-ongoing-supply-chain-attack/ #AIagent #AI #GenAI #Security #AquaSecurity #Trivy
-
Hackers have compromised Trivy, a widely used open-source vulnerability scanner with 33,200 GitHub stars. The supply chain attack affected 75 trivy-action tags, allowing attackers to steal GitHub tokens, cloud credentials, SSH keys and Kubernetes tokens from developer pipelines. Users should rotate all secrets immediately. https://arstechnica.com/security/2026/03/widely-used-trivy-scanner-compromised-in-ongoing-supply-chain-attack/ #AIagent #AI #GenAI #Security #AquaSecurity #Trivy
-
Hackers have compromised Trivy, a widely used open-source vulnerability scanner with 33,200 GitHub stars. The supply chain attack affected 75 trivy-action tags, allowing attackers to steal GitHub tokens, cloud credentials, SSH keys and Kubernetes tokens from developer pipelines. Users should rotate all secrets immediately. https://arstechnica.com/security/2026/03/widely-used-trivy-scanner-compromised-in-ongoing-supply-chain-attack/ #AIagent #AI #GenAI #Security #AquaSecurity #Trivy
-
Widely used #Trivy #scanner compromised in ongoing supply-chain #attack
#Hackers have compromised virtually all versions of #AquaSecurity ’s widely used Trivy #vulnerability scanner in an ongoing #supplychain attack that could have wide-ranging consequences for #developers and the organizations that use them.
Trivy maintainer Itay Shakury confirmed the compromise on Friday,
#security #privacy -
Widely used #Trivy #scanner compromised in ongoing supply-chain #attack
#Hackers have compromised virtually all versions of #AquaSecurity ’s widely used Trivy #vulnerability scanner in an ongoing #supplychain attack that could have wide-ranging consequences for #developers and the organizations that use them.
Trivy maintainer Itay Shakury confirmed the compromise on Friday,
#security #privacy -
Widely used #Trivy #scanner compromised in ongoing supply-chain #attack
#Hackers have compromised virtually all versions of #AquaSecurity ’s widely used Trivy #vulnerability scanner in an ongoing #supplychain attack that could have wide-ranging consequences for #developers and the organizations that use them.
Trivy maintainer Itay Shakury confirmed the compromise on Friday,
#security #privacy -
Widely used #Trivy #scanner compromised in ongoing supply-chain #attack
#Hackers have compromised virtually all versions of #AquaSecurity ’s widely used Trivy #vulnerability scanner in an ongoing #supplychain attack that could have wide-ranging consequences for #developers and the organizations that use them.
Trivy maintainer Itay Shakury confirmed the compromise on Friday,
#security #privacy -
Aqua Security unveils Secure AI for protecting workloads from code to cloud https://www.helpnetsecurity.com/2025/04/29/aqua-security-secure-ai/ #Industrynews #AquaSecurity
-
Aqua Security unveils Secure AI for protecting workloads from code to cloud https://www.helpnetsecurity.com/2025/04/29/aqua-security-secure-ai/ #Industrynews #AquaSecurity
-
Aqua Security unveils Secure AI for protecting workloads from code to cloud https://www.helpnetsecurity.com/2025/04/29/aqua-security-secure-ai/ #Industrynews #AquaSecurity
-
Linux systems targeted with stealthy “Perfctl” cryptomining malware https://www.helpnetsecurity.com/2024/10/07/perfctl-perfcc-cryptomining-linux/ #misconfiguration #cryptojacking #vulnerability #AquaSecurity #Don'tmiss #Hotstuff #rootkits #malware #Linux #News
-
Linux systems targeted with stealthy “Perfctl” cryptomining malware https://www.helpnetsecurity.com/2024/10/07/perfctl-perfcc-cryptomining-linux/ #misconfiguration #cryptojacking #vulnerability #AquaSecurity #Don'tmiss #Hotstuff #rootkits #malware #Linux #News
-
Linux systems targeted with stealthy “Perfctl” cryptomining malware https://www.helpnetsecurity.com/2024/10/07/perfctl-perfcc-cryptomining-linux/ #misconfiguration #cryptojacking #vulnerability #AquaSecurity #Don'tmiss #Hotstuff #rootkits #malware #Linux #News
-
Malware exploits weak passwords in PostgreSQL for cryptojacking - Up to 800,000 internet-connected databases could be vulnerable to crypto... - https://cointelegraph.com/news/pg-mem-malware-targets-postgresql-databases-crypto-mining #cloud-nativesecurity #postgresqldatabases #cryptominingmalware #databasesecurity #pg_memmalware #weakpasswords #cryptojacking #cybersecurity #aquasecurity #miningpool
-
Malware exploits weak passwords in PostgreSQL for cryptojacking - Up to 800,000 internet-connected databases could be vulnerable to crypto... - https://cointelegraph.com/news/pg-mem-malware-targets-postgresql-databases-crypto-mining #cloud-nativesecurity #postgresqldatabases #cryptominingmalware #databasesecurity #pg_memmalware #weakpasswords #cryptojacking #cybersecurity #aquasecurity #miningpool
-
Malware exploits weak passwords in PostgreSQL for cryptojacking - Up to 800,000 internet-connected databases could be vulnerable to crypto... - https://cointelegraph.com/news/pg-mem-malware-targets-postgresql-databases-crypto-mining #cloud-nativesecurity #postgresqldatabases #cryptominingmalware #databasesecurity #pg_memmalware #weakpasswords #cryptojacking #cybersecurity #aquasecurity #miningpool
-
PostgreSQL databases under attack https://www.helpnetsecurity.com/2024/08/21/postgresql-prevent-cryptojacking/ #cryptojacking #AquaSecurity #bruteforce #PostgreSQL #Don'tmiss #Hotstuff #malware #cloud #Linux #News #tips
-
PostgreSQL databases under attack https://www.helpnetsecurity.com/2024/08/21/postgresql-prevent-cryptojacking/ #cryptojacking #AquaSecurity #bruteforce #PostgreSQL #Don'tmiss #Hotstuff #malware #cloud #Linux #News #tips
-
Traceeshark: Open-source plugin for Wireshark https://www.helpnetsecurity.com/2024/08/08/traceeshark-open-source-plugin-wireshark/ #cybersecurity #AquaSecurity #Don'tmiss #Wireshark #Hotstuff #software #network #News
-
Traceeshark: Open-source plugin for Wireshark https://www.helpnetsecurity.com/2024/08/08/traceeshark-open-source-plugin-wireshark/ #cybersecurity #AquaSecurity #Don'tmiss #Wireshark #Hotstuff #software #network #News
-
Traceeshark: Open-source plugin for Wireshark https://www.helpnetsecurity.com/2024/08/08/traceeshark-open-source-plugin-wireshark/ #cybersecurity #AquaSecurity #Don'tmiss #Wireshark #Hotstuff #software #network #News
-
Developer errors lead to long-term exposure of sensitive data in Git repos https://www.helpnetsecurity.com/2024/06/26/git-exposed-secrets/ #softwaredevelopment #cybersecurity #AquaSecurity #opensource #Don'tmiss #software #GitHub #report #News #data
-
Developer errors lead to long-term exposure of sensitive data in Git repos https://www.helpnetsecurity.com/2024/06/26/git-exposed-secrets/ #softwaredevelopment #cybersecurity #AquaSecurity #opensource #Don'tmiss #software #GitHub #report #News #data
-
Developer errors lead to long-term exposure of sensitive data in Git repos https://www.helpnetsecurity.com/2024/06/26/git-exposed-secrets/ #softwaredevelopment #cybersecurity #AquaSecurity #opensource #Don'tmiss #software #GitHub #report #News #data
-
Understanding cyber risks beyond data breaches https://www.helpnetsecurity.com/2024/05/20/cyber-risk-trends-video/ #cybersecurity #AquaSecurity #Bitdefender #cyberrisk #Seraphic #Imperva #Tanium #Video #video
-
Understanding cyber risks beyond data breaches https://www.helpnetsecurity.com/2024/05/20/cyber-risk-trends-video/ #cybersecurity #AquaSecurity #Bitdefender #cyberrisk #Seraphic #Imperva #Tanium #Video #video
-
Understanding cyber risks beyond data breaches https://www.helpnetsecurity.com/2024/05/20/cyber-risk-trends-video/ #cybersecurity #AquaSecurity #Bitdefender #cyberrisk #Seraphic #Imperva #Tanium #Video #video
-
Exposing the top cloud security threats https://www.helpnetsecurity.com/2024/04/15/global-businesses-top-cloud-security-threats-video/ #artificialintelligence #cloudsecurity #cybersecurity #AquaSecurity #Don'tmiss #Hotstuff #threat #Video #video
-
Exposing the top cloud security threats https://www.helpnetsecurity.com/2024/04/15/global-businesses-top-cloud-security-threats-video/ #artificialintelligence #cloudsecurity #cybersecurity #AquaSecurity #Don'tmiss #Hotstuff #threat #Video #video
-
Exposing the top cloud security threats https://www.helpnetsecurity.com/2024/04/15/global-businesses-top-cloud-security-threats-video/ #artificialintelligence #cloudsecurity #cybersecurity #AquaSecurity #Don'tmiss #Hotstuff #threat #Video #video
-
New IBM LinuxONE 4 Express – Rack-mounted pre-configured Linux mainframe
https://newsroom.ibm.com/2024-02-06-New-IBM-LinuxONE-4-Express-to-Offer-Cost-Savings-and-Client-Value-through-a-Cyber-Resilient-Hybrid-Cloud-and-AI-Platform
#ycombinator #IBM #LinuxONE_4Express #hybrid_cloud #LinuxONE #Tina_Tarquinio #Dr_Owain_Kenway #Steven_Dickens #IBM_LinuxONE_Ecosystem #AquaSecurity #Clari5 #Exponential_AI #Opollo_Technologies #Pennant #Spiking -
New IBM LinuxONE 4 Express – Rack-mounted pre-configured Linux mainframe
https://newsroom.ibm.com/2024-02-06-New-IBM-LinuxONE-4-Express-to-Offer-Cost-Savings-and-Client-Value-through-a-Cyber-Resilient-Hybrid-Cloud-and-AI-Platform
#ycombinator #IBM #LinuxONE_4Express #hybrid_cloud #LinuxONE #Tina_Tarquinio #Dr_Owain_Kenway #Steven_Dickens #IBM_LinuxONE_Ecosystem #AquaSecurity #Clari5 #Exponential_AI #Opollo_Technologies #Pennant #Spiking -
"🔒 Redis Threat Alert: HeadCrab 2.0 Unleashed 🔒"
The latest analysis by Aqua Security unveils HeadCrab 2.0, targeting Redis servers with advanced evasion techniques. HeadCrab 2.0 is an evolved malware targeting Redis servers, significantly more sophisticated than its predecessor. This malware employs a fileless loader mechanism to evade detection, making it harder to spot by hiding its presence on the system. It also uses standard Redis commands for malicious activities, further concealing its operations. Aqua Security researchers have identified a method to detect this malware by scanning for abnormal responses from the infected servers. This discovery can be crucial for cybersecurity efforts and detection. Stay secure! 🛡️
Tags: #CyberSecurity #Redis #Malware #HeadCrab2.0 #InfoSec #AquaSecurity
For an in-depth look, check out Aqua Security's blog.
-
"🔒 Redis Threat Alert: HeadCrab 2.0 Unleashed 🔒"
The latest analysis by Aqua Security unveils HeadCrab 2.0, targeting Redis servers with advanced evasion techniques. HeadCrab 2.0 is an evolved malware targeting Redis servers, significantly more sophisticated than its predecessor. This malware employs a fileless loader mechanism to evade detection, making it harder to spot by hiding its presence on the system. It also uses standard Redis commands for malicious activities, further concealing its operations. Aqua Security researchers have identified a method to detect this malware by scanning for abnormal responses from the infected servers. This discovery can be crucial for cybersecurity efforts and detection. Stay secure! 🛡️
Tags: #CyberSecurity #Redis #Malware #HeadCrab2.0 #InfoSec #AquaSecurity
For an in-depth look, check out Aqua Security's blog.
-
"🔒 Redis Threat Alert: HeadCrab 2.0 Unleashed 🔒"
The latest analysis by Aqua Security unveils HeadCrab 2.0, targeting Redis servers with advanced evasion techniques. HeadCrab 2.0 is an evolved malware targeting Redis servers, significantly more sophisticated than its predecessor. This malware employs a fileless loader mechanism to evade detection, making it harder to spot by hiding its presence on the system. It also uses standard Redis commands for malicious activities, further concealing its operations. Aqua Security researchers have identified a method to detect this malware by scanning for abnormal responses from the infected servers. This discovery can be crucial for cybersecurity efforts and detection. Stay secure! 🛡️
Tags: #CyberSecurity #Redis #Malware #HeadCrab2.0 #InfoSec #AquaSecurity
For an in-depth look, check out Aqua Security's blog.