Supply Chain Attack Targets Aqua Trivy Extensions with Malicious AI Prompts

Supply Chain Attack Targets Aqua Trivy Extensions with Malicious AI Prompts

First seen 3 Mar 2026, 08:10 UTC GbhackersCybersecuritynews 26.3

Article Content

Browse articles
ThreatCluster

On March 2, 2026, a supply chain attack was identified affecting developers using the Aqua Trivy VS Code extension. Unauthorized code was discovered in versions 1.8.12 and 1.8.13, which were uploaded to the OpenVSX registry on February 27 and 28, 2026. The attack involved the introduction of hidden natural-language prompts designed to hijack local coding tools.

Timeline

2026-02-27
Version 1.8.12 of Aqua Trivy uploaded to OpenVSX
2026-02-28
Version 1.8.13 of Aqua Trivy uploaded to OpenVSX
2026-03-02
Supply chain attack identified affecting Aqua Trivy
2026-03-03
Articles published reporting on the attack