Security News > 2021 > August > Security alert: The threat is coming from inside your Docker container images

Security alert: The threat is coming from inside your Docker container images
2021-08-27 20:03

Five malicious Docker container images were recently detected on Docker Hub, totaling more than 120,000 pulls.

There's a new threat cybersecurity teams need to watch out for: malicious Docker containers hiding on legitimate sites like Docker Hub, where Aqua Security's threat research arm, Team Nautilus, found five images accounting for a whopping 120,000 pulls by unsuspecting users.

Team Nautilus is further warning that the malicious Docker images could be part of a larger software supply chain attack with its eyes on disrupting cloud-native environments.

The other two malicious Docker images-openjdk and golang-attempt to trick users into believing they are images for the open source Java implementation OpenJDK and open-source programming language Go. It's these that are likely part of a supply chain attack aiming to infect the companies that pull those images.

"Create a curated internal registry for base container images and limit who can access public registries. Enact policies that ensure container images are vetted before they are included in the internal registry," Morag said.

"It's important to ensure that the container images in use are the same ones that have been vetted and approved," Morag said.


News URL

https://www.techrepublic.com/article/security-alert-the-threat-is-coming-from-inside-your-container-images/#ftag=RSS56d97e7

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Docker 24 0 19 36 20 75