EC Suffers Data Breach Due to Trivy Supply Chain Attack, 92GB of Compressed Data Stolen
2 hour ago / Read about 0 minute
Author:小编   

The European Commission confirmed a significant data breach in its cloud environment, caused by a supply chain attack on the open-source security tool Trivy. The EU Computer Emergency Response Team (CERT-EU) identified the cybercrime group TeamPCP as the perpetrator. By exploiting a compromised version of Trivy, the attackers obtained API keys used by the European Commission on Amazon Web Services (AWS), enabling them to steal approximately 92GB of compressed data (around 340GB uncompressed) from the infrastructure hosting the Europa.eu platform.