Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    FDA proposes excluding Novo, Lilly GLP-1s from compounding list

    April 30, 2026

    Avalyn Pharma IPO ends oversubscribed with concentrated allocations

    April 30, 2026

    More than half of all Polymarket “long shot” bets on military action pay off

    April 30, 2026
    Facebook X (Twitter) Instagram
    Addison Markets
    • Home
    • USA
    • Europe
    • Business
    • Investing
    • Tech
    • Politics
    • Contact Us
    Addison Markets
    Home»Tech»Why a recent supply-chain attack singled out security firms Checkmarx and Bitwarden
    Tech

    Why a recent supply-chain attack singled out security firms Checkmarx and Bitwarden

    franperez66q@protonmail.comBy franperez66q@protonmail.comApril 30, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email



    “Current evidence indicates that this data originated from Checkmarx’s GitHub repositories, and that access to those repositories was facilitated through the initial supply chain attack of March 23, 2023,” Checkmarx said Monday. The company didn’t say what kinds of data were leaked.

    Checkmarx isn’t the only security company to suffer the aftereffects of the Trivy breach. Socket said that another security firm, Bitwarden, was also hit in the same supply-chain attack. Socket tied the Bitwarden breach to the Trivy campaign because the payload used the same C2 endpoint and core infrastructure as the Checkmarx malware.

    Bitwarden said that a malicious package “was briefly distributed through the npm delivery path for @bitwarden/cli@2026.4.0 between 5:57 PM and 7:30 PM (ET) on April 22, 2026.”

    The Trivy attack was carried out by a group calling itself TeamPCP. The group is among the most successful access-broker operations, a class of hackers that smashes and grabs credentials from victims and then sells them to other hackers. The key to its ascendency is its targeting of tools that already have privileged access.

    In the case of Checkmarx, it appears TeamPCP sold access credentials to Lapsu$, a ransomware group made up mostly of teenagers known as much for its skill in breaching large companies as it is for its taunts and braggadocio once it succeeds.

    The incidents demonstrate the cascading effects a single breach can have. With both Checkmarx and Bitwarden affected, it’s possible that there will be new attacks on their customers or partners and that even more downstream compromises could result from those. Socket CEO Feross Aboukhadijeh said in an email that security organizations are particular targets because of their products’ close proximity to sensitive data and their wide distribution across the Internet.

    “You will see this same thread throughout these compromises,” Aboukhadijeh said. “Attackers are treating security tools as both a target and a delivery mechanism. They are attacking the products that are supposed to protect the supply chain, then using those same products to steal credentials and move to the next victim.”



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    franperez66q@protonmail.com
    • Website

    Related Posts

    More than half of all Polymarket “long shot” bets on military action pay off

    April 30, 2026

    Gemini sets sights on derivatives expansion after winning key U.S. regulatory approval

    April 30, 2026

    Check your gravity with NASA’s Artemis II zero-g indicator

    April 30, 2026

    Microsoft delivers a promising quarter but can’t shake software fears

    April 30, 2026

    Professional school grads from diverse classes get higher salaries

    April 30, 2026

    Investors trust Google more than Meta when comes to spending on AI

    April 30, 2026
    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    FDA proposes excluding Novo, Lilly GLP-1s from compounding list

    April 30, 2026

    Avalyn Pharma IPO ends oversubscribed with concentrated allocations

    April 30, 2026

    More than half of all Polymarket “long shot” bets on military action pay off

    April 30, 2026

    Starmer heckled during Golders Green visit

    April 30, 2026
    © 2026 All right reserved
    • About Us
    • Privacy Policy
    • Terms & Conditions
    • Disclaimer

    Type above and press Enter to search. Press Esc to cancel.