The Checkmarx Jenkins compromise exposed developers and CI/CD environments to infostealer malware after attackers uploaded a malicious version of the company’s Jenkins AST plugin to the Jenkins Marketplace. Security researchers warned that organizations using the compromised plugin should immediately rotate credentials and investigate systems for potential compromise. The incident targeted one of the most widely…