Over 10 years we help companies reach their financial and branding goals. Engitech is a values-driven technology agency dedicated.

Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

Beginning March 23, 2026, threat actors attributed to LAPSUS$ (also tracked as TeamPCP by threat intelligence sources) compromised multiple components of the Checkmarx developer security toolchain, including KICS Docker images, GitHub Actions workflows, VS Code extensions distributed via Open VSX, and the Bitwarden CLI npm package. LAPSUS$ claimed responsibility for exfiltrating Checkmarx GitHub repository content, including source code, API keys, and database credentials, and published alleged data on a dark web leak site. Any development team that executed the compromised tooling during the exposure window faces elevated risk of credential theft, code integrity compromise, and downstream supply chain contamination in their own software pipelines.

Author

Tech Jacks Solutions