this post was submitted on 17 Jul 2023
216 points (99.1% liked)

Linux

47237 readers
3343 users here now

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word "Linux" in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

Related Communities

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

founded 5 years ago
MODERATORS
 

The result of the study can be found at https://arxiv.org/pdf/2307.03958.pdf.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 69 points 1 year ago (18 children)

The amount of the internet and cloud infrastructure that is built on public Docker images makes this... worrying.

[–] [email protected] 47 points 1 year ago (7 children)

This isn't really surprising and isn't actually a real security issue with Docker itself or any of the popular public images. Docker Hub is a public registry so people inexperienced with Docker accidentally include secrets in their images and upload it to Docker Hub, this is actually pretty well known and the Docker docs specifically warn people about this.

[–] [email protected] -2 points 1 year ago (6 children)

How can you be sure it doesn't affect popular images? The probability may be lower, but I don't think you can rule it out.

[–] [email protected] 18 points 1 year ago

The most popular images on Docker Hub are official / library images, they are curated and monitored by Docker for best practices and security vulnerabilities. I'm not saying that means you should trust them completely, it's always best practice to read the source of an image before you use it.

load more comments (5 replies)
load more comments (5 replies)
load more comments (15 replies)