
SecurityAqua Security Trivy (trivy-action / setup-trivy GitHub Actions, Trivy binary)
Cisco Source Code Stolen in Trivy Supply-Chain Breach, BleepingComputer Reports
Threat actors used credentials harvested in the TeamPCP Trivy supply-chain compromise (CVE-2026-33634) to breach Cisco's development environment, cloning 300+ GitHub repositories - including AI Assistant and AI Defense source code - and accessing a small number of AWS accounts, according to BleepingComputer.
