home.social

#dockersecurity — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #dockersecurity, aggregated by home.social.

fetched live
  1. 300+ malicious GitHub packages posed as OpenClaw Docker tools. They shipped a LuaJIT Trojan that steals credentials and captures screenshots, phoning home to C2 servers in Frankfurt.

    Only pull from the official repo. Verify package authors. Pin image digests.

    clawhosters.com/blog/posts/ope

    #OpenClaw #DockerSecurity #SupplyChainAttack #InfoSec

  2. @realdrdoug Just discovered your #selfhosting solution and it looks exciting! Apparently it is using #Docker like #CasaOS, #Tipi, etc.

    Does #HomeServerHQ use Docker in rootful mode or rootless mode? Is using #podman instead supported?

    #selfhost #selfhosted #DockerCommunity #DockerSecurity #LinuxSecurity #homelab

  3. @realdrdoug Just discovered your #selfhosting solution and it looks exciting! Apparently it is using #Docker like #CasaOS, #Tipi, etc.

    Does #HomeServerHQ use Docker in rootful mode or rootless mode? Is using #podman instead supported?

    #selfhost #selfhosted #DockerCommunity #DockerSecurity #LinuxSecurity #homelab

  4. MinIO's bold strategy to solve security issues: just don't release the patch! 🤦‍♂️ Because clearly, ignoring a #CVE is the new way to handle #vulnerabilities. 🤷‍♀️ Docker users, brace yourselves for the innovative non-solution of the decade! 🚀✨
    github.com/minio/minio/issues/ #MinIO #DockerSecurity #PatchStrategy #HackerNews #ngated

  5. MinIO's bold strategy to solve security issues: just don't release the patch! 🤦‍♂️ Because clearly, ignoring a #CVE is the new way to handle #vulnerabilities. 🤷‍♀️ Docker users, brace yourselves for the innovative non-solution of the decade! 🚀✨
    github.com/minio/minio/issues/ #MinIO #DockerSecurity #PatchStrategy #HackerNews #ngated

  6. Exposing your home lab to the internet can open a path into your personal accounts and even your work assets.

    In our latest blog post, Morgan Davis shows how to cut that risk with low-cost controls you can apply today, no enterprise tools needed. It teaches security thinking to help you reduce your attack surface and more.

    📌 Read the guide here: pentestpartners.com/security-b

    #cybersecurity #homelab #selfhosting #dockersecurity #linuxsecurity #infosec

  7. Exposing your home lab to the internet can open a path into your personal accounts and even your work assets.

    In our latest blog post, Morgan Davis shows how to cut that risk with low-cost controls you can apply today, no enterprise tools needed. It teaches security thinking to help you reduce your attack surface and more.

    📌 Read the guide here: pentestpartners.com/security-b

    #cybersecurity #homelab #selfhosting #dockersecurity #linuxsecurity #infosec

  8. Imagine getting enterprise-grade container security without the enterprise price tag. Docker’s new catalog offers rapid 7-day patches, vetted by experts and even FedRAMP-ready—perfect for startups looking to level up their defense. Curious how?

    thedefendopsdiaries.com/docker

    #dockersecurity
    #containersecurity
    #smallbusiness
    #hardenedimages
    #cybersecurity
    #fedramp
    #devsecops
    #vulnerabilitymanagement
    #cloudsecurity

  9. Imagine getting enterprise-grade container security without the enterprise price tag. Docker’s new catalog offers rapid 7-day patches, vetted by experts and even FedRAMP-ready—perfect for startups looking to level up their defense. Curious how?

    thedefendopsdiaries.com/docker

    #dockersecurity
    #containersecurity
    #smallbusiness
    #hardenedimages
    #cybersecurity
    #fedramp
    #devsecops
    #vulnerabilitymanagement
    #cloudsecurity

  10. Why Docker’s integrity checks aren’t enough: understanding gh0stEdit and defending against hidden supply chain risks in container images. hackernoon.com/the-gh0stedit-a #dockersecurity

  11. Why Docker’s integrity checks aren’t enough: understanding gh0stEdit and defending against hidden supply chain risks in container images. hackernoon.com/the-gh0stedit-a #dockersecurity

  12. A hidden backdoor in a trusted Linux tool is giving attackers a master key to root access—how did a long-time contributor manage to compromise entire Docker images and official distributions? Read on to uncover the full story.

    thedefendopsdiaries.com/the-xz

    #xzutils
    #backdoor
    #cybersecurity
    #softwaresecurity
    #dockersecurity

  13. #Quibble: Container Security tool

    - Rust based open-source container analysis tool that reads and assesses various security, quality and noteworthy things about your configuration and setup

    geekmasher.dev/sec/quibble/22-

    #DevOps #DevSecOps #Docker #DockerSecurity #k8s #kubernetes #containers #containersecurity

    @geekmasher

  14. #Quibble: Container Security tool

    - Rust based open-source container analysis tool that reads and assesses various security, quality and noteworthy things about your configuration and setup

    geekmasher.dev/sec/quibble/22-

    #DevOps #DevSecOps #Docker #DockerSecurity #k8s #kubernetes #containers #containersecurity

    @geekmasher