cd/entity/Trivy· home› entities› Trivy
grep -l @trivy /news/*.json | wc -l → 25

Trivy

mentions 25 type Organization page 1/2 feed RSS

// recent coverage 25 mentions

04:34
2026-09-30
pub.towardsai.net
ai-safety

What the LiteLLM Breach Teaches Us About Securing LLM Gateways

Two LiteLLM releases, 1.82.7 and 1.82.8, were published to PyPI with a credential stealer inside after attackers tracked as TeamPCP stole a PyPI publishing token via a compromised Trivy GitHub Action,…

03:33
2026-09-14
dev.to
ai-infrastructure

I Moved Everything to Kubernetes, Then Moved It Back

A developer moved six self-hosted services from Docker Compose to a K3s Kubernetes cluster using ArgoCD, Kyverno admission policy, Trivy image scanning, and SealedSecrets, then reversed the migration …

02:20
2026-09-14
dev.to
ai-infrastructure

Migrated Up, Then Back

A developer migrated seven self-hosted services to Kubernetes using K3s, ArgoCD, Kyverno, Trivy, and SealedSecrets, then reversed all seven back to Docker Compose in a single afternoon. The reversal w…

02:09
2026-08-24
byteiota.com
ai-infrastructure

LiteLLM Breach: How Your AI Stack Got Backdoored in March

In March 2026, threat actor group TeamPCP published two backdoored versions of LiteLLM (1.82.7 and 1.82.8) to PyPI, live for roughly six hours, compromising more than 2,500 organizations and 434,000 C…

13:00
2026-08-17
docker.com
ai-policy

Make zero CVEs your new default

Docker AI Governance now streams every policy decision into the SIEM that security teams already use, providing a searchable record in Docker Cloud. The update follows a year in which supply-chain att…

21:04
2026-08-16
socket.dev
ai-agents

How AI Agents Expand the Software Supply Chain Attack Surface

Socket founder and CEO Feross Aboukhadijeh told AI Council 2026 that AI agents are expanding the software supply chain attack surface by selecting dependencies, connecting to MCP servers, installing s…

14:18
2026-08-13
echo.ai
ai-infrastructure

We eliminated 1,400 CVEs in NanoClaw's container images

Echo, in partnership with NanoClaw, eliminated 1,400 CVEs from NanoClaw's container images by using vulnerability scanners, upgrading safe libraries, backporting patches, and replacing the base OS wit…

12:02
2026-08-11
csoonline.com
ai-safety

GitHub already has an EDR. You just have to listen to it

Researchers Yossi Weizman of Microsoft and Mor Weinberger of Echo presented at Black Hat USA 2026 a new open-source tool, 'GitHub Threat Detector,' that uses GitHub's own event stream to detect supply…

09:54
2026-08-05
github.com
developer-tools

How HN: Argus – open-source security scanner with MCP

Argus, an open-source security scanner that orchestrates 20+ industry-standard tools including Semgrep, Trivy, Gitleaks, tfsec, Checkov, and OWASP ZAP behind a single command and an MCP server, is now…

12:10
2026-07-12
byteiota.com
ai-tools

DockSec: Fix Docker Vulnerabilities, Not Just Find Them

DockSec, an OWASP Incubator Project, launches to bridge the gap between vulnerability detection and remediation in Docker containers by orchestrating Trivy, Grype, and Docker Scout scanners with an LL…

page 1 / 2 next →
// co-occurs with top 8 entities
// topics top 6 topics