TeamPCP ha usato credenziali rubate nella breach di Trivy del 19 marzo (CVE-2026-33634) per accedere ai workflow GitHub Actions di Checkmarx e esfiltrare segreti CI.
Part of the PlainSec briefing for 2026-03-26