#docker-hub

[ follow ]
fromTechzine Global
2 days ago

Docker Hub contains treasure trove of 10,000+ images with exposed secrets

Nearly half of the exposed images contained five or more secrets each. Flare's November 2025 scan of Docker Hub found 10,456 container images with exposed keys across 205 distinct namespaces. After filtering for high and critical severity findings, researchers successfully identified 101 companies behind the leaks. The exposed credentials ranged from AI model access tokens to cloud infrastructure keys and database passwords.
Information security
Information security
fromTheregister
2 days ago

10K Docker images spray live cloud creds across the internet

Over 10,000 public Docker Hub images expose active cloud, AI model, CI/CD, and production credentials across 100+ companies, enabling broad infrastructure access.
fromThe Hacker News
1 month ago

LinkPro Linux Rootkit Uses eBPF to Hide and Activates via Magic TCP Packets

"This backdoor features functionalities relying on the installation of two eBPF [extended Berkeley Packet Filter] modules, on the one hand to conceal itself, and on the other hand to be remotely activated upon receiving a 'magic packet,'" security researcher Théo Letailleur said. The infection, per the French cybersecurity company, involved the attackers exploiting an exposed Jenkins server vulnerable to CVE-2024-23897 as the starting point, following which a malicious Docker Hub image named "kvlnt/vv" (now removed) was deployed on several Kubernetes clusters.
Information security
fromTechzine Global
2 months ago

Docker makes secure images accessible to smaller businesses

Docker is launching a new subscription service for its Hardened Images catalog. The secure container images are designed to help organizations achieve near-zero CVEs without the high costs that were previously associated with this. With this launch, Docker is committed to democratizing container security. Every developer often starts their journey at Docker Hub. According to the company, this first step should be secure by default, without a premium price tag.
Information security
Marketing tech
fromTechzine Global
7 months ago

Docker expands AI capabilities with MCP tools

Docker MCP tools simplify and secure AI integration into developers' workflows by leveraging familiar Docker experiences.
Partnerships are key to creating a secure ecosystem for AI development within Docker.
[ Load more ]