WhisperX tag archive

#CI/CD compromise

This page collects WhisperX intelligence signals tagged #CI/CD compromise. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-05-11 12:40:35 · The Register

1. Checkmarx Jenkins Plugin Sabotaged: Malicious Version Detected in Supply Chain Attack

Checkmarx disclosed a supply chain compromise targeting its Jenkins plugin, warning customers that an unauthorized version of its AST Scanner was uploaded to the Jenkins Marketplace over the weekend. The company confirmed the breach in a customer advisory on Saturday, May 9, stating it was actively working to remove th...