Millions of Docker repos found pushing malware and phishing sites
Since early 2021, three extensive attacks have targeted users of Docker Hub, infecting millions of repositories with malware and phishing websites.
About 20% of the 15 million repositories hosted by Docker Hub had malicious information, ranging from spam to harmful malware and phishing websites, as discovered by JFrog security researchers.
The researchers linked over 2.81 million repositories to three significant harmful campaigns and found nearly 4.6 million repositories without Docker images, which could not be used with a Kubernetes cluster or a Docker engine.
Different strategies were employed by each of these efforts to produce and disseminate the malicious repositories. While the "Website SEO" campaign established a few phony repositories per day and employed a single user ...



