7 ms·
Containers prevent this kind of info stealing greatly, only explicitly provided creds would be leaked.
by wswin 6mo ago
Containers prevent this kind of info stealing greatly, only explicitly provided creds would be leaked.
- jFriedensreich 6mo agoContainers can mean many things, if you mean plain docker default configured containers then no, they are a packaging mechanism not safe environment by themselves.
- wswin 6mo agoThey don't have access to the host filesystem nor environment variables and this attack wouldn't work.
- jFriedensreich 6mo agoJust because this attack example did not contain container escape exploits does not mean this is safe. Its better than nothing but nothing that will save us.
- lyu07282 6mo agoThose supply chain attacks we are seeing are bad, but if someone burns a 0day container escape for it, it would probably be a net positive effect on security overall. Just saying this is FUD.
- jFriedensreich 6mo agoFUD is crypto and tech bro speech. Using containers without vm, gvisor or similar is just irresponsible.
- lyu07282 6mo agoOh you are young, FUD was criticism to IBM sales people scaring customers away from PC compatible clones.