market · May 14, 2026
Trellix Hack Exposes Ransomware Trust Crisis
Share the canonical public link.
Ransomware group LockBit breached Trellix on May 11, 2026, stealing source code from the cybersecurity firm's development environment. The intrusion targeted repositories containing endpoint detection and response (EDR) and extended detection and response (XDR) product blueprints, enabling potential bypass techniques for attackers. Trellix reported no evidence of code tampering but confirmed unauthorized access to sensitive intellectual property. Enterprises using Trellix EDR/XDR solutions face heightened risks from customized exploits derived from the leaked code. LockBit claimed responsibility on May 12, 2026, threatening to release the data unless a ransom is paid.