Checkmarx KICS Official Docker Repo Compromised to Inject Malicious Code

A significant supply chain attack targeting the official checkmarx/kics Docker Hub repository, where threat actors pushed trojanized images capable of harvesting and exfiltrating sensitive developer credentials and infrastructure secrets. Docker’s internal monitoring flagged suspicious activity around KICS image tags on April 22, 2026, and promptly alerted Socket researchers. The investigation revealed that attackers had overwritten […]

The post Checkmarx KICS Official Docker Repo Compromised to Inject Malicious Code appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: