Skip to content
Supply Chain Attack Targets Aqua Trivy Extensions with Malicious AI Prompts

Supply Chain Attack Targets Aqua Trivy Extensions with Malicious AI Prompts

First seen 3 Mar 2026, 08:10 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 16:10 UTC

On March 2, 2026, a supply chain attack was identified affecting developers using the Aqua Trivy VS Code extension. Unauthorized code was discovered in versions 1.8.12 and 1.8.13, which were uploaded to the OpenVSX registry on February 27 and 28, 2026. The attack involved the introduction of hidden natural-language prompts designed to hijack local coding tools.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 213d ago How this analysis works

Timeline

2026-02-27
Version 1.8.12 of Aqua Trivy uploaded to OpenVSX
2026-02-28
Version 1.8.13 of Aqua Trivy uploaded to OpenVSX
2026-03-02
Supply chain attack identified affecting Aqua Trivy
2026-03-03
Articles published reporting on the attack

More articles in this cluster (2)

Following this threat?

Track OpenVSX in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed