Skip to content
AttackFeed by Joe Wagner | Cybersecurity News from Across the Internet

AttackFeed by Joe Wagner

Cybersecurity News from Across the Internet

  • Attack/News Feeds
  • Gov Alerts/ISAC Feeds
  • Vulnerability Alerts
  • Privacy/Governance Feeds
  • Fraud Feeds
  • iOS App
  • Android App
  • Home
  • Attack Feeds
  • Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages  – The Hacker News
AttackFeed by Joe Wagner | Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages  - The Hacker News

Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages  – The Hacker News

Posted on March 21, 2026 By [email protected] (The Hacker News)
Attack Feeds

The threat actors behind the supply chain attack targeting the popular Trivy scanner are suspected to be conducting follow-on attacks that have led to the compromise of a large number of npm packages with a previously undocumented self-propagating worm dubbed CanisterWorm.
The name is a reference to the fact that the malware uses an ICP canister, which refers to tamperproof smart contracts on  –

Read More  – The Hacker News 

Post navigation

❮ Previous Post: Hacker Group LAPSUS$ Claims Alleged AstraZeneca Data Breach  – Hackread – Cybersecurity News, Data Breaches, AI and More
Next Post: CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026  – The Hacker News ❯

You may also like

AttackFeed by Joe Wagner | Canvas hack: is it ever a good idea to pay a ransom, and what happens to the data?  - Data and computer security | The Guardian
Attack Feeds
Canvas hack: is it ever a good idea to pay a ransom, and what happens to the data?  – Data and computer security | The Guardian
May 16, 2026
AttackFeed by Joe Wagner | Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials  - The Hacker News
Attack Feeds
Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials  – The Hacker News
April 2, 2026
AttackFeed by Joe Wagner | Three China-Linked Clusters Target Southeast Asian Government in 2025 Cyber Campaign  - The Hacker News
Attack Feeds
Three China-Linked Clusters Target Southeast Asian Government in 2025 Cyber Campaign  – The Hacker News
March 30, 2026
AttackFeed by Joe Wagner | Trivy Supply Chain Attack Triggers Self-Spreading CanisterWorm Across 47 npm Packages  - The Hacker News
Attack Feeds
All AI and Security Teams Need Transparent Data Pipelines  – Hackread – Cybersecurity News, Data Breaches, AI and More
March 24, 2026
  • Attack Feeds
  • Privacy/Governance Feed
  • Gov/ISAC Feeds
  • Alert Feeds
  • Privacy Policy
  • Wagner Cybersecurity

Copyright © 2026 AttackFeed by Joe Wagner.

Theme: Oceanly News Dark by ScriptsTown

We are using cookies for analytics purposes only.  We do not store, track or sell user information.

You can find out more about which cookies we are using or switch them off in .

AttackFeed by Joe Wagner
Powered by  GDPR Cookie Compliance
Privacy Overview

This website uses cookies so that we can provide you with the best user experience possible. Cookie information is stored in your browser and performs functions such as recognising you when you return to our website and helping our team to understand which sections of the website you find most interesting and useful.

Strictly Necessary Cookies

Strictly Necessary Cookie should be enabled at all times so that we can save your preferences for cookie settings.