home.social

#dockerhub — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #dockerhub, aggregated by home.social.

  1. Checkmarx nel mirino di TeamPCP: l’immagine Docker ufficiale di KICS trojanizzata per esfiltrare i segreti dell’infrastruttura

    Per la seconda volta in due mesi, il gruppo TeamPCP ha violato la supply chain di Checkmarx, pubblicando immagini Docker trojanizzate del security scanner KICS ed estensioni VS Code maligne capaci di rubare token cloud, credenziali GitHub e chiavi SSH. Il payload mcpAddon.js, consegnato tramite runtime Bun da un commit retrodatato, punta a trasformare ogni pipeline CI/CD in un punto di esfiltrazione.

    insicurezzadigitale.com/checkm

  2. Malicious Docker Images Compromise Checkmarx Supply Chain

    Malicious Docker images compromised the Checkmarx supply chain by embedding a tampered KICS binary that secretly collected and sent sensitive data to an external endpoint. This sneaky data-exfiltration risk put users at risk, thanks to an altered scan report generated by the poisoned image.

    osintsights.com/malicious-dock

    #MaliciousDockerImages #SupplyChain #DockerHub #DataExfiltration #Kics

  3. Wasn't too much work, so the build environment got implemented into my @nlnetlabs image already. You had my promise. The initial build was manual but it should run as an too.

    The first madnuttah/unbound-docker build (v1.19.3-1) with the per architecture optimized libraries is available on . 💚

    github.com/madnuttah/unbound-d

    hub.docker.com/r/madnuttah/unb

  4. Btw, any other recommendations for less standard packages in, for instance, #github or docker images in #dockerhub or #quayio would be appreciated. At least docker hub has a sort of tag for the images built by a verified or official source. Can that be a security assurance? Any sources are appreciated!

  5. I am curious. What docker registry do you guys use for your business projects?

  6. I am curious. What docker registry do you guys use for your business projects?

  7. Finally got time to update the source of my bentopdf instance, to avoid pulling from the "discontinued" docker hub version

    Remember to switch to ghcr.io/alam00000/bentopdf-simple:1.15.3 to avoid being compromised by the other version

    More context: github.com/alam00000/bentopdf/

    #selfhosted #selfhosting #pdf #homelab #security #docker #dockerhub #ghcr #

  8. We just moved all our container images from #DockerHub to #GHCR. Thanks to Docker Hub for supporting us all these years for free, but #FOSS need strong and reliable partners. More details at github.com/kiwix/overview/wiki

  9. Finally got time to update the source of my bentopdf instance, to avoid pulling from the "discontinued" docker hub version

    Remember to switch to ghcr.io/alam00000/bentopdf-simple:1.15.3 to avoid being compromised by the other version

    More context: github.com/alam00000/bentopdf/

    #selfhosted #selfhosting #pdf #homelab #security #docker #dockerhub #ghcr #

  10. Finally got time to update the source of my bentopdf instance, to avoid pulling from the "discontinued" docker hub version

    Remember to switch to ghcr.io/alam00000/bentopdf-simple:1.15.3 to avoid being compromised by the other version

    More context: github.com/alam00000/bentopdf/

    #selfhosted #selfhosting #pdf #homelab #security #docker #dockerhub #ghcr #

  11. Finally got time to update the source of my bentopdf instance, to avoid pulling from the "discontinued" docker hub version

    Remember to switch to ghcr.io/alam00000/bentopdf-simple:1.15.3 to avoid being compromised by the other version

    More context: github.com/alam00000/bentopdf/

    #selfhosted #selfhosting #pdf #homelab #security #docker #dockerhub #ghcr #

  12. We just moved all our container images from #DockerHub to #GHCR. Thanks to Docker Hub for supporting us all these years for free, but #FOSS need strong and reliable partners. More details at github.com/kiwix/overview/wiki

  13. We just moved all our container images from #DockerHub to #GHCR. Thanks to Docker Hub for supporting us all these years for free, but #FOSS need strong and reliable partners. More details at github.com/kiwix/overview/wiki

  14. We just moved all our container images from #DockerHub to #GHCR. Thanks to Docker Hub for supporting us all these years for free, but #FOSS need strong and reliable partners. More details at github.com/kiwix/overview/wiki

  15. [Перевод] Как сделать своё хранилище образов контейнеров

    В статье описаны шаги для самостоятельного хостинга container registry. Узнайте, как управлять своими образами, оптимизировать рабочие процессы и защищать свои приложения от внешних рисков.

    habr.com/ru/companies/flant/ar

    #контейнеры #containers #container_registry #docker #dockerhub #selfhosted #хранилище_образов #docker_build #docker_compose #реестр_контейнеров

  16. Momentan geht mir Dockerhub voll aufn Sack. Angeblich Pulllimit erreicht (100 Pulls in 6 Stunden)

    IM LEBEN NICHT! :neocat_angry:

    #Docker #Dockerhub

  17. Nhà phát triển Bentopdf vừa mất quyền kiểm soát namespace trên Docker Hub, đưa ra cảnh báo: **Không pull bentopdf/** và **không cập nhật container lên phiên bản mới**. Tới thời điểm này vẫn chưa có thông tin cập nhật mới; nhà phát triển im lặng trên GitHub. #Docker #Bentopdf #SelfHosted #DockerHub #CôngNghệ #Vietnam #TinCôngNghệ

    reddit.com/r/selfhosted/commen

  18. 📦 Compressed 7z archive created automatically after scan completion

    ⚙️ Environment variables: HOSTNAME (log suffix), EXIT_AFTER_RUN, CLEAN_LOGS_AFTER_ARCHIVE, CLAM_EXCLUDE_TMP

    🔒 Host filesystem mounted at /host in read-only mode for safe scanning

    🚀 Available on #DockerHub: michabbb/security-scanner

    🔗 github.com/michabbb/docker-sec

  19. We're thinking about providing a self-hosted image proxy cache for CodeFloe, limited to CodeFloe CI servers to prevent abuse.

    Read more here: forum.codefloe.com/t/dockerhub

    #codefloe #dockerhub #harbor #forgejo

  20. In basic concept, this would be similar to what #Harbor can do with #DockerHub.

  21. DockerHub удаляет старые JDK теги — ваши пайплайны могут быть под угрозой

    Если вы используете openjdk:<tag> образы в CI/CD и пулите их с Docker Hub, Вам следует оперативно перепроверить свои пайплайны: мейнтейнеры DockerHub удалили ряд устаревших тегов без громких анонсов. Некоторые сборки уже не работают — пострадали сотни пользователей. В данной новости, эксперт сообщества Spring АйО Михаил Поливаха рассказывает, что произошло, почему это проблема, и какие есть альтернативы.

    habr.com/ru/companies/spring_a

    #java #kotlin #docker #dockerhub #deploy #devops #spring #spring_boot #spring_framework #springboot

  22. Todo for the weekend: set up my own Docker registry so I don't have to rely on the Docker Inc registry...

    #Docker #AWS #Dockerhub #FullServiceDisruption

  23. @fyw321 @geerlingguy My 8 node cluster costs around 55W via POE. It is 3 pi4 8G control+worker nodes, and 5 pi4 4G worker-only nodes (1 is actually 8G.)

    Storage is #iscsi on spinning rust on #TrueNAS, but you can do all this on local disks.

    It handles a LOT:
    - #Promstack, #FluxCD, #Calico, various scrapers
    - #Adguard
    - #Blocky (another adblocking #dns)
    - #Jellyfin
    - #Ombi, Prowlarr, *arr, Deluge
    - Home automation helpers (#ser2sock instances, #zigbee/#zwave 2mqtt, but not HA itself)
    - #Argo for builds (deprecated in favor of the x64 cloud lab. Building x64 docker containers on arm is BAD)
    - Democratic CSI for iscsi/nfs
    - #GoHarbor container registry & #dockerhub cache
    - #Mealie recipe manager
    - #Monica contact manager
    - #SMTP relay to gmail
    - #Ubiquiti console (bootstrapping becomes a chicken and egg problem though, if it goes down wrong)
    - #Wireguard #VPN server
    - #Whoogle
    - #VisualStudioCode and a #dind sidecar
    - SSL termination for most of the rest of the network

  24. #jfrog #artifactory support is the worst.

    Same image pull errors in our #k8s cluster on #aks for months now.

    Proxied #docker images, which already exist in atrifactory, can't be pulled, because they are "not found" or "to many requests" error passed from #dockerhub remote registry.

    Support unable to help or even to understand the issue.

    #fml

  25. Telegram Боты на Aiogram 3.x: Деплой бота через Docker

    Приветствую, друзья! Сегодня мы разберемся, как деплоить бота с использованием Docker. Многие новички считают Docker сложным, но, прочитав эту статью, вы поймете, что это не так, и полюбите эту технологию. Дисклеймер Цель данного руководства — не обучение Docker, а пример использования этой технологии в контекте телеграмм ботов на aiogram 3. Я не буду сильно акцентировать внимание на таких вещах, как слои, volume, docker-compos, bridge и прочей технической информации более глубокого уровня, чем необходимо для деплоя ботов на VPS сервере. Далее вы получите пример использования Docker и общее описание методов (команд). Если вам нужны мои обучающие публикации по Docker, сообщите мне об этом любым удобным способом. Подготовка Для начала вам нужно обзавестись базой данных PostgreSQL. О том, как развернуть ее на VPS сервере, я писал ТУТ . Также потребуется установить Docker. Новичкам будет удобнее поставить Docker Desktop, если с технологией уже знакомы, используйте консольный вариант.

    habr.com/ru/articles/823714/

    #docker #dockerfile #dockerhub #aiogram #aiogram3

  26. Am Wochenende ein wenig #Kubernetes geübt, dafür ein #DockerImage angepasst dabei auf Fragen gestossen:
    Wie lädt man Images ins lokale #Minikube hoch? Und wie war das noch gleich mit #DockerHub und wie verwendet man die #GoogleDockerRegistry ?

    Wenn ich das nächste Mal danach suche, finde ich es auf meiner eigenen Seite :-)

    unixwitch.de/de/sysadmin/tools

  27. Updated the rpm repo path for my container. Nice to see that we now have a nightly build as well ! If you are looking for a with a public build pipeline, signed with and auto released every sunday.

    Checkout github.com/chimbosonic/veilid-.

    Container images are uploaded to and .io