Hacker News new | ask | show | jobs
by Rial_Labs 62 days ago
The Trivy malware bypassed log masking entirely by reading directly from runner process memory. Secrets managers did not help because the credentials had already been retrieved and placed in memory as plaintext strings. That is what got stolen.