Switch language한국어
Back to the list

How TeamPCP turned Aqua Security’s own Trivy scanner into a weapon against millions of developers

TL;DR AI

Key summary

2 min read
  1. TeamPCP breached Aqua Security’s Trivy CI/CD pipeline and GitHub repos on March 19, 2026 and trojanized Trivy releases.

  2. The attackers exfiltrated CI/CD credentials and used them to compromise dozens of npm packages and the Python package LiteLLM.

  3. Malicious Trivy binaries installed persistent backdoors that polled an Internet Computer canister and the campaign spread via a CanisterWorm npm attack.

  4. Palo Alto Networks described the campaign as a five‑phase chain including tag poisoning, three‑stage credential theft, and persistent backdoors.

Read the original