Close Menu
Spicy Creator Tips —Spicy Creator Tips —

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Walgreens Cuts Internal Media-Buying Team Amid Strategic Shift

    August 28, 2025

    Microsoft fires two more employees for participating in Palestine protests on campus

    August 28, 2025

    I Tested Both the Budget and Luxury Version of Helix’s Best Mattress for Side Sleepers — Here’s How They Compare and the One I’d Buy in Labor Day Sales

    August 28, 2025
    Facebook X (Twitter) Instagram
    Spicy Creator Tips —Spicy Creator Tips —
    Trending
    • Walgreens Cuts Internal Media-Buying Team Amid Strategic Shift
    • Microsoft fires two more employees for participating in Palestine protests on campus
    • I Tested Both the Budget and Luxury Version of Helix’s Best Mattress for Side Sleepers — Here’s How They Compare and the One I’d Buy in Labor Day Sales
    • Media Composer In Depth: Bin Columns by Kevin P. McAuliffe
    • Think twice before you step over your fellow human
    • I Stopped Doing These 3 Things Myself — and It Made My Business More Profitable
    • Slingback Heels Are Trending at the Venice Film Festival 2025
    • I tried Google’s ‘nano banana’ AI image editor that topped LMArena
    Facebook X (Twitter) Instagram
    • Home
    • Ideas
    • Editing
    • Equipment
    • Growth
    • Retention
    • Stories
    • Strategy
    • Engagement
    • Modeling
    • Captions
    Spicy Creator Tips —Spicy Creator Tips —
    Home»Equipment»Docker could still be hosting a whole load of potentially malicious images – putting users at risk
    Equipment

    Docker could still be hosting a whole load of potentially malicious images – putting users at risk

    spicycreatortips_18q76aBy spicycreatortips_18q76aAugust 13, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
    A hacker typing on a MacBook laptop with code on the screen.
    Share
    Facebook Twitter LinkedIn Pinterest Email

    • XZ-Utils backdoor was discovered over a 12 months in the past
    • Regardless of warnings, some Linux photographs nonetheless include it
    • Debian will not budge as the photographs are “historic artifacts”

    At the least 35 Linux photographs hosted on Docker Hub include harmful backdoor malware, which may put software program builders and their merchandise liable to takeover, information theft, ransomware, and extra.

    At the least a few of the photographs, nonetheless, will stay on the location and won’t be eliminated, since they’re outdated anyway and shouldn’t be used.

    In March 2024, the open supply neighborhood was surprised when safety researchers noticed “XZ Utils”, a bit of malicious code, within the upstream xz-utils releases 5.6.0 and 5.6.1 (the liblzma.so library) that briefly propagated into some Linux distro packages (not their secure releases). The backdoor was inserted by a developer named ‘Jia Tan’ who, within the two years main as much as that second, constructed important credibility locally by way of numerous contributions.


    You could like

    Debian, Fedora, and others

    Now, safety researchers at Binarly have mentioned malicious xz-utils packages containing the backdoor have been distributed in sure branches of a number of Linux distributions, together with Debian, Fedora and OpenSUSE.

    “This had severe implications for the software program provide chain, because it turned difficult to shortly establish all of the locations the place the backdoored library had been included.” “This had severe implications for the software program provide chain, because it turned difficult to shortly establish all of the locations the place the backdoored library had been included.”

    Binarly’s consultants are actually saying a number of Docker photographs, constructed across the time of the compromise, additionally include the backdoor. It says that at the beginning look, it may not appear alarming since if the distribution packages have been backdoored, then any Docker photographs primarily based on them could be backdoored, as effectively.

    Nonetheless, the researchers mentioned a few of the compromised photographs are nonetheless accessible on Docker Hub, and have been even utilized in constructing different photographs which have additionally been transitively contaminated. Binarly mentioned it discovered “solely” 35 photographs as a result of it targeted solely on Debian photographs:

    Signal as much as the TechRadar Professional e-newsletter to get all the highest information, opinion, options and steering your small business must succeed!

    “The influence on Docker photographs from Fedora, OpenSUSE, and different distributions that have been impacted by the XZ Utils backdoor stays unknown at the moment.”

    Debian mentioned it wouldn’t be eradicating the malicious photographs since they’re outdated anyway and shouldn’t be used. They are going to be left as “historic artifacts”.

    By way of BleepingComputer

    You may also like

    Docker Hosting Images Load malicious Potentially putting Risk users
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    spicycreatortips_18q76a
    • Website

    Related Posts

    I Tested Both the Budget and Luxury Version of Helix’s Best Mattress for Side Sleepers — Here’s How They Compare and the One I’d Buy in Labor Day Sales

    August 28, 2025

    Microsoft introduces a pair of in-house AI models

    August 28, 2025

    Anthropic users face a new choice – opt out or share your data for AI training

    August 28, 2025

    This Is How You Log Off

    August 28, 2025

    Google’s Pixel Care Plus includes free screen and battery repair

    August 28, 2025

    Don’t Know What to Watch? Samsung TVs Add AI Assistant Copilot to Help

    August 28, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Don't Miss
    Engagement

    Walgreens Cuts Internal Media-Buying Team Amid Strategic Shift

    August 28, 2025

    Walgreens laid off its media-buying staff in July, ADWEEK has realized. The cuts quantity to…

    Microsoft fires two more employees for participating in Palestine protests on campus

    August 28, 2025

    I Tested Both the Budget and Luxury Version of Helix’s Best Mattress for Side Sleepers — Here’s How They Compare and the One I’d Buy in Labor Day Sales

    August 28, 2025

    Media Composer In Depth: Bin Columns by Kevin P. McAuliffe

    August 28, 2025
    Our Picks

    Four ways to be more selfish at work

    June 18, 2025

    How to Create a Seamless Instagram Carousel Post

    June 18, 2025

    Up First from NPR : NPR

    June 18, 2025

    Meta Plans to Release New Oakley, Prada AI Smart Glasses

    June 18, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    About Us

    Welcome to SpicyCreatorTips.com — your go-to hub for leveling up your content game!

    At Spicy Creator Tips, we believe that every creator has the potential to grow, engage, and thrive with the right strategies and tools.
    We're accepting new partnerships right now.

    Our Picks

    Walgreens Cuts Internal Media-Buying Team Amid Strategic Shift

    August 28, 2025

    Microsoft fires two more employees for participating in Palestine protests on campus

    August 28, 2025
    Recent Posts
    • Walgreens Cuts Internal Media-Buying Team Amid Strategic Shift
    • Microsoft fires two more employees for participating in Palestine protests on campus
    • I Tested Both the Budget and Luxury Version of Helix’s Best Mattress for Side Sleepers — Here’s How They Compare and the One I’d Buy in Labor Day Sales
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Disclaimer
    • Get In Touch
    • Privacy Policy
    • Terms and Conditions
    © 2025 spicycreatortips. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.