Hackers breached the European Commission (The Next Web)
LWN recently reported on the Trivycompromise that led, in turn, to the compromise of the LiteLLM system; thatarticle made the point that the extent of the problem was likely ratherlarger than was known. The Next Web now reportsthat the Trivy attack was used to compromise a wide range of EuropeanCommission systems.
The European Union's computer emergency response team said onThursday that a supply chain attack on an open-source securityscanner gave hackers the keys to the European Commission's cloudinfrastructure, resulting in the theft and public leak ofapproximately 92 gigabytes of compressed data including thepersonal information and email contents of staff across dozens ofEU institutions.