Close Menu
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    • Blogging
    • SEO & Digital Marketing
    • WiFi / Internet & Networking
    • Cybersecurity
    • Tech Tools & Mobile / Apps
    • Privacy & Online Earning
    Facebook X (Twitter) Instagram
    Wifi PortalWifi Portal
    Home»Cybersecurity»European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack
    Cybersecurity

    European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack

    adminBy adminApril 4, 2026No Comments3 Mins Read
    Facebook Twitter LinkedIn Telegram Pinterest Tumblr Reddit WhatsApp Email
    EU and European cyber policy
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The European Commission (EC) has confirmed that hackers stole over 300GB of data from its AWS environment using an API key compromised in the Trivy supply chain attack.

    The incident occurred on March 24 and was initially disclosed on March 27, when the EC warned that cloud infrastructure hosting its resources for the Europa.eu platform had been breached.

    Now, CERT-EU reveals that the hack involved an AWS cloud account that is part of the backend for the Europa.eu hosting service, which supports public websites for the EC and other European Union entities.

    Hackers gained access to the AWS account using an API key compromised on March 19 in the supply chain attack on Aqua Security’s Trivy vulnerability scanner, carried out by the TeamPCP hacking group.

    “The European Commission was unwittingly using a compromised version of Trivy during the relevant timeframe, having received it through normal software update channels,” CERT-EU explains.

    Using the compromised AWS key, the attackers created and attached a new access key to a user account and carried out reconnaissance, according to the EU’s cybersecurity team.

    Advertisement. Scroll to continue reading.

    “This key granted control over other AWS accounts affiliated with the European Commission. On the same day, the threat actor attempted to discover additional secrets by launching TruffleHog, a tool commonly used for scanning secrets and validating AWS credentials by calling the Security Token Service (STS),” CERT-EU says.

    Wiz recently explained that TeamPCP wasted no time validating stolen credentials, launching discovery operations, exfiltrating more data, and attempting lateral movement.

    “The threat actor used the compromised AWS secret to exfiltrate data from the affected cloud environment. The exfiltrated data relates to websites hosted for up to 71 clients of the Europa web hosting service: 42 internal clients of the European Commission, and at least 29 other Union entities,” CERT-EU notes.

    On March 28, the infamous ShinyHunters extortion group added the stolen information to its Tor-based leak site.

    European Commission data leak

    The 340GB of uncompressed data includes personal information such as names, email addresses, and usernames, mainly from the EC’s websites. Users across multiple EU entities were likely affected as well, CERT-EU says.

    Roughly 2.22GB of the data, or 51,992 files, represents automated notifications, including bounce-back messages containing original user-submitted content, which could include personal information.

    “The analysis of the databases linked to the hosted websites is underway. Given the volume and intricate nature of the data involved, this process requires a considerable amount of time,” CERT-EU notes.

    Upon learning of the compromise, the EC revoked the compromised account’s rights, deactivated and rotated the compromised credentials, and notified the relevant data protection bodies. The Commission also confirmed that the incident did not affect its internal systems.

    Related: React2Shell Exploited in Large-Scale Credential Harvesting Campaign

    Related: T-Mobile Sets the Record Straight on Latest Data Breach Filing

    Related: 250,000 Affected by Data Breach at Nacogdoches Memorial Hospital

    Related: Mercor Hit by LiteLLM Supply Chain Attack

    Attack Breach Chain Commission confirms data European linked Supply Trivy
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
    Previous ArticleThe 5-Pillar Framework For AI Content That Audiences Actually Trust
    Next Article This lightweight Linux distro is what old hardware has been waiting for
    admin
    • Website

    Related Posts

    Vercel Breach Tied to Context AI Hack Exposes Limited Customer Credentials

    April 20, 2026

    Apple account change alerts abused to send phishing emails

    April 19, 2026

    Social media bans might steer kids into riskier corners of the internet

    April 19, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Search Blog
    About
    About

    At WifiPortal.tech, we share simple, easy-to-follow guides on cybersecurity, online privacy, and digital opportunities. Our goal is to help everyday users browse safely, protect personal data, and explore smart ways to earn online. Whether you’re new to the digital world or looking to strengthen your online knowledge, our content is here to keep you informed and secure.

    Trending Blogs

    CachyOS just shipped Linux 7.0, and it has some extra performance tweaks added to the mix

    April 20, 2026

    Vercel Breach Tied to Context AI Hack Exposes Limited Customer Credentials

    April 20, 2026

    Galaxy S26 Ultra vs Galaxy S23 Ultra – Is it FINALLY time to upgrade? [Video]

    April 20, 2026

    That screenless Google band on Stephen Curry’s wrist may finally have a name

    April 20, 2026
    Categories
    • Blogging (65)
    • Cybersecurity (1,404)
    • Privacy & Online Earning (172)
    • SEO & Digital Marketing (850)
    • Tech Tools & Mobile / Apps (1,690)
    • WiFi / Internet & Networking (232)

    Subscribe to Updates

    Stay updated with the latest tips on cybersecurity, online privacy, and digital opportunities straight to your inbox.

    WifiPortal.tech is a blogging platform focused on cybersecurity, online privacy, and digital opportunities. We share easy-to-follow guides, tips, and resources to help you stay safe online and explore new ways of working in the digital world.

    Our Picks

    CachyOS just shipped Linux 7.0, and it has some extra performance tweaks added to the mix

    April 20, 2026

    Vercel Breach Tied to Context AI Hack Exposes Limited Customer Credentials

    April 20, 2026

    Galaxy S26 Ultra vs Galaxy S23 Ultra – Is it FINALLY time to upgrade? [Video]

    April 20, 2026
    Most Popular
    • CachyOS just shipped Linux 7.0, and it has some extra performance tweaks added to the mix
    • Vercel Breach Tied to Context AI Hack Exposes Limited Customer Credentials
    • Galaxy S26 Ultra vs Galaxy S23 Ultra – Is it FINALLY time to upgrade? [Video]
    • That screenless Google band on Stephen Curry’s wrist may finally have a name
    • Starbucks’ New ChatGPT Integration Is a Potential Privacy Nightmare
    • I replaced my entire streaming setup with a $30 device and free apps
    • Blood Strike – FPS for all 1.003.650015 APK Download by NetEase Games
    • The Ray-Ban Meta (Gen 1) smart glasses just scored a rare 25% discount at Amazon
    © 2026 WifiPortal.tech. Designed by WifiPortal.tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer

    Type above and press Enter to search. Press Esc to cancel.