Realaquasecurity
Attackerscan.aquasecurtiy.org
Two letters swapped. aquasecurity is the GitHub organization that publishes Trivy
Realcheckmarx.com
Attackercheckmarx.zone
Same name, different ending
Reallitellm.ai
Attackermodels.litellm.cloud
Same name, different ending, with a plausible subdomain
Attackers used stolen credentials to push malicious code into Trivy, a popular security scanner, and its GitHub Actions, and published a malicious Trivy release. Pipelines that ran it sent their secrets to the lookalike domain. Credentials taken that way opened Checkmarx's KICS and LiteLLM's release pipeline, where a malicious PyPI release, litellm 1.82.8, sent credentials to models.litellm.cloud. The lookalike domains were not the way in; they served the malicious code and received the stolen data.