Post #1724122
2026-04-27 09:27 UTC
Hubris?
Security firm Checkmarx says its free and open-source tool that scans for security flaws, dubbed Keeping Infrastructure as Code Secure (or KICS), was compromised and that its Docker, VSCode, and Open VSX extensions were manipulated to steal users' credentials.
https://www.bleepingcomputer.com/news/security/new-checkmarx-supply-chain-breach-affects-kics-analysis-tool/
https://checkmarx.com/blog/checkmarx-security-update-april-22/
Replies (0)
No replies.