#dockersecurity — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #dockersecurity, aggregated by home.social.
-
OWASP DockSec v2026.7.4 and v2026.7.5 Released
-
OWASP DockSec v2026.7.4 and v2026.7.5 Released
-
OWASP DockSec v2026.7.1 released
-
300+ malicious GitHub packages posed as OpenClaw Docker tools. They shipped a LuaJIT Trojan that steals credentials and captures screenshots, phoning home to C2 servers in Frankfurt.
Only pull from the official repo. Verify package authors. Pin image digests.
https://clawhosters.com/blog/posts/openclaw-trojanized-github-packages-2026
-
@realdrdoug Just discovered your #selfhosting solution and it looks exciting! Apparently it is using #Docker like #CasaOS, #Tipi, etc.
Does #HomeServerHQ use Docker in rootful mode or rootless mode? Is using #podman instead supported?
#selfhost #selfhosted #DockerCommunity #DockerSecurity #LinuxSecurity #homelab
-
@realdrdoug Just discovered your #selfhosting solution and it looks exciting! Apparently it is using #Docker like #CasaOS, #Tipi, etc.
Does #HomeServerHQ use Docker in rootful mode or rootless mode? Is using #podman instead supported?
#selfhost #selfhosted #DockerCommunity #DockerSecurity #LinuxSecurity #homelab
-
MinIO's bold strategy to solve security issues: just don't release the patch! 🤦♂️ Because clearly, ignoring a #CVE is the new way to handle #vulnerabilities. 🤷♀️ Docker users, brace yourselves for the innovative non-solution of the decade! 🚀✨
https://github.com/minio/minio/issues/21647 #MinIO #DockerSecurity #PatchStrategy #HackerNews #ngated -
MinIO's bold strategy to solve security issues: just don't release the patch! 🤦♂️ Because clearly, ignoring a #CVE is the new way to handle #vulnerabilities. 🤷♀️ Docker users, brace yourselves for the innovative non-solution of the decade! 🚀✨
https://github.com/minio/minio/issues/21647 #MinIO #DockerSecurity #PatchStrategy #HackerNews #ngated -
Exposing your home lab to the internet can open a path into your personal accounts and even your work assets.
In our latest blog post, Morgan Davis shows how to cut that risk with low-cost controls you can apply today, no enterprise tools needed. It teaches security thinking to help you reduce your attack surface and more.
📌 Read the guide here: https://www.pentestpartners.com/security-blog/hardening-your-home-lab/
#cybersecurity #homelab #selfhosting #dockersecurity #linuxsecurity #infosec -
Exposing your home lab to the internet can open a path into your personal accounts and even your work assets.
In our latest blog post, Morgan Davis shows how to cut that risk with low-cost controls you can apply today, no enterprise tools needed. It teaches security thinking to help you reduce your attack surface and more.
📌 Read the guide here: https://www.pentestpartners.com/security-blog/hardening-your-home-lab/
#cybersecurity #homelab #selfhosting #dockersecurity #linuxsecurity #infosec -
Imagine getting enterprise-grade container security without the enterprise price tag. Docker’s new catalog offers rapid 7-day patches, vetted by experts and even FedRAMP-ready—perfect for startups looking to level up their defense. Curious how?
#dockersecurity
#containersecurity
#smallbusiness
#hardenedimages
#cybersecurity
#fedramp
#devsecops
#vulnerabilitymanagement
#cloudsecurity -
Imagine getting enterprise-grade container security without the enterprise price tag. Docker’s new catalog offers rapid 7-day patches, vetted by experts and even FedRAMP-ready—perfect for startups looking to level up their defense. Curious how?
#dockersecurity
#containersecurity
#smallbusiness
#hardenedimages
#cybersecurity
#fedramp
#devsecops
#vulnerabilitymanagement
#cloudsecurity -
Misconfigured Docker APIs are a hacker’s gateway to secret crypto-mining—thanks to Tor, stopping them is tougher than ever. Is your cloud truly secure?
https://thedefendopsdiaries.com/securing-docker-apis-navigating-the-threat-landscape/
#dockersecurity
#cybersecurity
#cloudsecurity
#cryptojacking
#tor -
Why Docker’s integrity checks aren’t enough: understanding gh0stEdit and defending against hidden supply chain risks in container images. https://hackernoon.com/the-gh0stedit-attack-how-hackers-hide-in-docker-image-layers #dockersecurity
-
Why Docker’s integrity checks aren’t enough: understanding gh0stEdit and defending against hidden supply chain risks in container images. https://hackernoon.com/the-gh0stedit-attack-how-hackers-hide-in-docker-image-layers #dockersecurity
-
A hidden backdoor in a trusted Linux tool is giving attackers a master key to root access—how did a long-time contributor manage to compromise entire Docker images and official distributions? Read on to uncover the full story.
https://thedefendopsdiaries.com/the-xz-utils-backdoor-a-critical-software-supply-chain-compromise/
#xzutils
#backdoor
#cybersecurity
#softwaresecurity
#dockersecurity -
Hackers Exploit Docker Remote API Servers To Inject Gafgyt Malware https://gbhackers.com/docker-api-hacked-gafgyt-malware/ #CyberSecurityNews #DockerSecurity #GafgytMalware #DDOSattacks #Botnet #DDOS
-
Hackers Exploit Docker Remote API Servers To Inject Gafgyt Malware https://gbhackers.com/docker-api-hacked-gafgyt-malware/ #CyberSecurityNews #DockerSecurity #GafgytMalware #DDOSattacks #Botnet #DDOS
-
Hackers Exploit Docker Remote API Servers To Inject Gafgyt Malware https://cybersecuritynews.com/gafgyt-malware-attacks-docker-api-servers/ #CyberSecurityNews #DockerSecurity #cybersecurity #GafgytMalware #Malware #Botnet
-
Hackers Exploit Docker Remote API Servers To Inject Gafgyt Malware https://cybersecuritynews.com/gafgyt-malware-attacks-docker-api-servers/ #CyberSecurityNews #DockerSecurity #cybersecurity #GafgytMalware #Malware #Botnet
-
Hackers Employing New Techniques To Attack Docker API https://gbhackers.com/new-hacking-techniques-docker-api/ #Cryptocurrencyhack #SystemPersistence #Malwareanalysis #DockerSecurity #Cryptojacking #CyberAttack #Malware
-
Hackers Employing New Techniques To Attack Docker API https://gbhackers.com/new-hacking-techniques-docker-api/ #Cryptocurrencyhack #SystemPersistence #Malwareanalysis #DockerSecurity #Cryptojacking #CyberAttack #Malware
-
Is Your Container Image Really Distroless?
#Docker #Engineering #ContainerSecurity #Dockersecurity #Kubernetes #SecureSoftwareSupplyChainhttps://www.docker.com/blog/is-your-container-image-really-distroless/
-
How to Use OpenPubkey to SSH Without SSH Keys
#Docker #Products #Containers #Dockersecurity #OpenPubkeyhttps://www.docker.com/blog/how-to-use-openpubkey-to-ssh-without-ssh-keys/
-
Docker Container Security: Scanning for Vulnerabilities with Trivy
https://www.youtube.com/watch?v=xqrBpVgsNiI
#DockerSecurity #LearnTech #ContainerSecurity #VulnerabilityScanning
-
Docker Container Security: Scanning for Vulnerabilities with Trivy
https://www.youtube.com/watch?v=xqrBpVgsNiI
#DockerSecurity #LearnTech #ContainerSecurity #VulnerabilityScanning
-
Docker Container Security: Scanning for Vulnerabilities with Trivy
https://www.youtube.com/watch?v=xqrBpVgsNiI
#DockerSecurity #LearnTech #ContainerSecurity #VulnerabilityScanning
-
Docker Container Security: Scanning for Vulnerabilities with Trivy
https://www.youtube.com/watch?v=xqrBpVgsNiI
#DockerSecurity #LearnTech #ContainerSecurity #VulnerabilityScanning
-
Security Advisory: High Severity Curl Vulnerability
#Docker #Products #DockerScout #Dockersecurity #Securityhttps://www.docker.com/blog/security-advisory-high-severity-curl-vulnerability/
-
How to run Nuclei & other ProjectDiscovery tools in Docker
https://blog.projectdiscovery.io/how-to-run-nuclei-other-projectdiscovery-tools-in-docker/
-
#Quibble: Container Security tool
- Rust based open-source container analysis tool that reads and assesses various security, quality and noteworthy things about your configuration and setup
https://geekmasher.dev/sec/quibble/22-12-08--quibble-intro/
#DevOps #DevSecOps #Docker #DockerSecurity #k8s #kubernetes #containers #containersecurity
@geekmasher -
#Quibble: Container Security tool
- Rust based open-source container analysis tool that reads and assesses various security, quality and noteworthy things about your configuration and setup
https://geekmasher.dev/sec/quibble/22-12-08--quibble-intro/
#DevOps #DevSecOps #Docker #DockerSecurity #k8s #kubernetes #containers #containersecurity
@geekmasher -
https://bookmarks.tmp.directory/?askBZA: TALOS-2019-0782 || Cisco Talos Intelligence Group - Comprehensive Threat Intelligence https://talosintelligence.com/vulnerability_reports/TALOS-2019-0782 #docker #container #dockersecurity #security