Remove docker-security
article thumbnail

TeamTNT is back and targets servers to run Bitcoin encryption solvers

Security Affairs

The TeamTNT botnet is a crypto-mining malware operation that has been active since April 2020 and targets Docker installs. The activity of the TeamTNT group has been detailed by security firm Trend Micro, but in August 2020 experts from Cado Security discovered that botnet is also able to target misconfigured Kubernetes installations.

article thumbnail

Thousands of secrets lurk in app images on Docker Hub

Security Affairs

Thousands of secrets have been left exposed on Docker Hub, a platform where web developers collaborate on their code for web applications. The Docker Hub store has at least 5,493 container images that contain secrets and could be considered as exposing sensitive information. What were the web apps leaking?

Analytics 118
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Threat Group TeamTNT Returns with New Cloud Attacks

eSecurity Planet

A retired threat actor has returned with new attacks aimed at the cloud, containers – and encryption keys. These operations specifically target Docker instances and APIs. Also read: Top Container Security Solutions. All internet communications, including SSL and SSH, rely on private and public keys for encryption.

Cloud 120
article thumbnail

Crooks continue to abuse exposed Docker APIs for Cryptojacking

Security Affairs

Cybercriminals continue to abuse unprotected Docker APIs to create new containers used for cryptojacking, Trend Micro warns. Crooks continue to abuse unprotected Docker APIs to create new containers used for cryptojacking. Each Docker container runs on Docker Engine along with other containers. Run the script (auto.sh).

Mining 92
article thumbnail

Wormable bash DarkRadiation Ransomware targets Linux distros and docker containers

Security Affairs

DarkRadiation is a new strain of ransomware implemented in Bash that targets Linux and Docker cloud containers and leverages Telegram for C2. Trend Micro researchers spotted a new strain of ransomware, dubbed DarkRadiation, which is writted in Bash script and target Linux distributions (Red Hat/CentOS and Debian) and Docker cloud containers.

article thumbnail

Cisco Talos warns of hardcoded credentials in Alpine Linux Docker Images

Security Affairs

Since December 2015, Alpine Linux Docker images have been shipped with hardcoded credentials, a NULL password for the root user. it affects Alpine Docker versions 3.3 including Alpine Docker Edge. “Versions of the Official Alpine Linux Docker images (since v3. “In builds of the Alpine Docker Image (>=3.3)

article thumbnail

What Is Container Security? Complete Guide

eSecurity Planet

Container security is the combination of cybersecurity tools, strategies, and best practices that are used to protect container ecosystems and the applications and other components they house. Container runtime security A container runtime is a type of software that runs containers on the host operating system(s).