Skip to content
CVE Watch
Explainers Nation-State Threats Threat Intelligence Vulnerabilities & CVEs
Data Breaches Vulnerabilities & CVEs Ransomware & Malware Nation-State Threats Security Tools Compliance & Policy Cloud Security Threat Intelligence

#KICS supply-chain attack

Malicious Docker Hub repository with Checkmarx KICS images compromised by hackers
Data Breaches

[2026] Checkmarx KICS Supply-Chain Hack Steals Secrets in 84 Minutes

In a blistering 84-minute window on April 22, 2026, attackers turned Checkmarx's KICS tool against its users, siphoning secrets from Docker pulls and VSCode extensions. This isn't just another breach—it's a blueprint for how supply-chain attacks are evolving.

4 min read 7 hours ago
CVE Watch

Threat intelligence. Zero noise.

Categories

  • Explainers
  • Nation-State Threats
  • Threat Intelligence
  • Vulnerabilities & CVEs
  • Data Breaches
  • Vulnerabilities & CVEs
  • Ransomware & Malware
  • Nation-State Threats
  • Security Tools
  • Compliance & Policy
  • Cloud Security
  • Threat Intelligence

More

  • RSS Feed
  • Sitemap
  • About
  • Advertise

Legal

  • Privacy
  • Terms
  • Work With Us

Our Network

The AI Catchup AI & Machine Learning Legal AI Beat Legal Tech Fintech Rundown Finance & Banking DevTools Feed Developer Tools Open Source Beat Open Source Fintech Dose Crypto & DeFi

© 2026 CVE Watch. All rights reserved.

📬

Stay in the loop

The week's most important stories from CVE Watch, delivered once a week.

No spam. Unsubscribe any time.

You clearly love Cybersecurity news — get it in your inbox

🏠 Home 🔍 Search 🔖 Saved 📂 Categories