Malicious KICS Docker Images and VS Code Extensions Hit Checkmarx Supply Chain
Abgelehnt
35.5
2026-04-25T07:00
Score-Aufschlüsselung
20
novelty
25
reach
35
concrete_impact
55
emotional_hook
50
source_quality
45
platform_fit
Zusammenfassung
Cybersecurity researchers have warned of malicious images pushed to the official "checkmarx/kics" Docker Hub repository. In an alert published today, software supply chain security company Socket revealed that unknown threat actors managed to have overwritten existing tags, including v2.1.20 and alpine, while also introducing a new v2.1.21 tag that does not correspond to an official release. The
Skripte (0)
1218cb1c…
Noch kein Skript generiert.
Score 35.5 — unter Schwellwert (65)