Skip to content

164news.com

  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms of Service
  • Cookie Policy

Hackers breached the European Commission by poisoning the security tool it used to protect itself

Posted on April 4, 2026 By 164news66 No Comments on Hackers breached the European Commission by poisoning the security tool it used to protect itself

Hackers Breach European Commission via Poisoned Open-Source Tool Trivy

Skip to content

Toggle Navigation

News

  • Events

    • TNW Conference
      • June 19 & 20, 2025
  • Spaces

  • Programs

    • Newsletters
    • Partner with us
    • Jobs
    • Contact

European Commission Data Breach: The Details

April 4, 2026 – 1:45 pm

CERT-EU has attributed a major data breach at the European Commission to cybercrime group TeamPCP, which exploited a supply chain attack on the open-source security tool Trivy to steal approximately 92 GB of compressed data from the Commission’s AWS infrastructure. The compromised data, subsequently published by ShinyHunters gang, included emails and personal details from up to 71 clients across EU institutions.

This breach highlights the vulnerabilities within the open-source software supply chain that underpins security tools relied upon by governments worldwide.

The Attack:

The attack initiated on March 19 when the European Commission downloaded a compromised version of Trivy, an extensively used open-source vulnerability scanner developed by Aqua Security. TeamPCP had previously exploited an incomplete credential rotation following a breach of Trivy‘s GitHub repository, allowing them to force-push malicious code to most version tags in the trivy-action repository.

The malware harvested an AWS API key, granting attackers access to the Commission’s cloud account on Amazon Web Services (AWS).

Subsequent steps included:

  • Reconnaissance: Using TruffleHog, a cloud credential scanning tool, the attackers searched for additional secrets.

  • Persistence: They created a new access key and attached it to an existing user to evade detection before enumerating IAM users, roles, EC2 instances, Lambda functions, RDS databases, S3 buckets, and Route 53 hosted zones.

  • Exfiltration: The focus was on ECS clusters, mapping task definitions for direct container access and bulk exfiltration from AWS Secrets Manager.

The Impact:

The European Commission’s Cybersecurity Operations Centre detected the anomaly on March 24, five days after initial compromise, through alerts of potential API misuse and abnormal network traffic.

Clock

Post navigation

Previous Post: NinjaOne offers a free trial of the IT management platform trusted by 35,000 organisations
Next Post: Nvidia’s $2 billion Marvell bet is not an investment. It is a toll booth.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Editor's Picks

  • Manhattan Personal Injury Prevention
  • Bronx Intellectual Property Attorney
  • Long Island Real Estate Dispute Resolution
  • Commercial Plumbing Installation Denver
  • Denver Plumber for Emergency Services
  • Denver Gas Line Replacement
  • Affordable Plumbing Repair Denver
  • Leak Detection Services Denver CO
  • Sewer Backup Cleanup Denver Colorado
  • Expert Drain Snaking Denver

Recent Posts

  • BYD has built China’s first 4nm driving chip, and it’s putting LiDAR on a $10,000 car
  • Anthropic’s Milan office lands with Generali, Pirelli and Enel as named Italian customers
  • The hybrid model: why the smartest finance teams aren’t going all-in on AI
  • Oura’s Ring 5 is 40% smaller than its predecessor, and it arrives three days before a likely IPO filing
  • Waymo’s new Ojai robotaxi is cheaper to build, harder to break, and made in China

Recent Comments

  1. g555gameapk on Repairing a Leaking Denver Basin Augmentor: A Comprehensive Step-by-Step Guide
  2. xbet100 on Repairing a Leaking Denver Basin Augmentor: A Comprehensive Step-by-Step Guide
  3. hh55betcc on Repairing a Leaking Denver Basin Augmentor: A Comprehensive Step-by-Step Guide
  4. 5sbetwin on Expert Advice on Choosing the Right Sewer Backup Repair Company in Denver, Colorado
  5. 5sbet1 on Expert Advice on Choosing the Right Sewer Backup Repair Company in Denver, Colorado

Archives

  • May 2026
  • April 2026
  • March 2026

Editor's Picks

  • Manhattan Personal Injury Prevention
  • Bronx Intellectual Property Attorney
  • Long Island Real Estate Dispute Resolution
  • Commercial Plumbing Installation Denver
  • Denver Plumber for Emergency Services
  • Denver Gas Line Replacement
  • Affordable Plumbing Repair Denver
  • Leak Detection Services Denver CO
  • Sewer Backup Cleanup Denver Colorado
  • Expert Drain Snaking Denver

Copyright © 2026 164news.com.

Powered by PressBook Dark WordPress theme