CopyEscape Flaw Turns Docker File Copies Into a Route to Host Root
A flaw in Docker’s archive extraction path can let a hostile container write beyond the destination chosen for a file copy. On Linux systems where the command runs...
CARBONATO Botnet Embeds an AI Agent in Compromised Docker Hosts
The CARBONATO botnet abuses unauthenticated Docker services, escapes privileged containers and installs an AI agent controlled through Telegram. Separate automated scripts spread across nearby networks while the agent...
Attackers Exploit Docker and Kubernetes Misconfigurations to Escape Containers and Seize Host Control
Security researchers have documented a wave of attacks exploiting Docker and Kubernetes misconfigurations to break out of containers and take full control of host systems, including supply chain...
Cryptojacking: protecting Docker and Kubernetes environments from new attacks
Cryptojacking—the unauthorized use of systems to mine cryptocurrency—has seen a troubling surge, with attackers increasingly exploiting misconfigured Docker and Kubernetes environments. This alarming trend targets high-performance cloud infrastructures,...