Get the latest tech news

JFrog Reveals Docker Hub Compromise Spanning Millions of Repositories


Malware attacks against millions of Docker Hub repositories have been underway since 2021. Assume all the content you host on a publicly accessible repository might be compromised.

Shachar Menashe, senior director of security research at JFrog, said approximately 2.8 million repositories have been compromised by malicious content. According to JFrog researchers, nearly a million repositories created in the middle of 2021 essentially turned Docker Hub into a “pirated eBook library. JFrog researchers are assuming those at these request parameters are likely copied and embedded into the software from an application programming interface (API) surfaced by a dubious advertising network that third parties pay for the distribution of executables.

Get the Android app

Or read this on r/technology

Read more on:

Photo of Millions

Millions

Photo of JFrog

JFrog

Photo of repositories

repositories

Related news:

News photo

Microsoft killed my online life after I called Gaza

News photo

Millions of Docker repos found pushing malware, phishing sites

News photo

Discord dismantles Spy.pet site that snooped on millions of users