Skip to content

Commit

Permalink
Update supply-chain-security/compromises/2022/docker-hub-malicious-co…
Browse files Browse the repository at this point in the history
…ntainers.md

Signed-off-by: Pushkar Joglekar <[email protected]>
  • Loading branch information
PushkarJ committed Dec 1, 2022
1 parent d40bdcc commit 345905e
Showing 1 changed file with 1 addition and 1 deletion.
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@ Docker Hub is the largest library and community for container images.

## Impact

There are hundreds of thousands of publicly available container images at the freely available Docker Hub library. Researchers at Sysdig scanned over 250,000 unverified Linux images and identified 1,652 that were mailicious. Crypto-miners represented the largest category, though significant numbers of embedded secrets and proxy avoidance tools were also found.
There are hundreds of thousands of publicly available container images at the freely available Docker Hub library. Researchers at Sysdig scanned over 250,000 unverified Linux images and identified 1,652 that were malicious. Crypto-miners represented the largest category, though significant numbers of embedded secrets and proxy avoidance tools were also found.

"Unfortunately, the size of the Docker Hub public library does not allow its operators to scrutinize all uploads daily; hence many malicious images go unreported.

Expand Down

0 comments on commit 345905e

Please sign in to comment.