Full Disclosure·2h agodive tar-slip in image file extraction#dive#tar-slip#path-traversalVulnerability
GBHackers·11h ago high14-Year-Old Linux Kernel Vulnerability Enables Root Access and Docker Escape#linux#kernel#cve-2025-39964 6 sources in the wild 3 min
Security Affairs·1d ago highAI-Powered CARBONATO Botnet Steals Credentials to Fund Its Own LLM Gateway#carbonato#botnet#docker 3 sources in the wild 6 min1
Help Net Security·1d agoDocker introduces OCI-based Kits to package agents and their guardrails#docker#ai-agents#sandboxesAI tools & infra 5 min
The Hacker News·3d ago highExploit Released for Unpatched Ubuntu Linux Flaw Enabling Host-Root Container Escape#ai-vulnerability-discovery#container-escape#docker 3 min1
arXiv cs.CR·6d agoBenchmarking Post-Quantum Cryptography in Lightweight Virtualization Environments on Embedded Hardware#post-quantum#pqc#tlsResearch
The Hacker News·9d ago highCritical Docker Sandboxes Flaw Lets Malicious Guest Code Read and Modify macOS Host Files#ai-coding-agents#docker#docker-sandboxes 4 min
Cyber Security News·9d ago highCritical Docker Sandbox Vulnerabilities Enable Malicious Guests to Escape Isolated microVM Workspaces#ai-agents#docker#macos 3 min
GBHackers·9d ago highDocker Sandboxes Vulnerabilities Let Malicious Guests Escape Workspace and Access Host Files#container-escape#docker#macos 4 min1
arXiv cs.CR·10d agoCollective Loss of Control in LLM Agent Systems: An Epidemic Account of Mutation, Contagion, and Recovery#benchmark#contagion#dockerAI safety & security
Hacker News · AI·11d ago highWe got admin access to Baseten's production GitHub in 25 minutes#autonomous-agent#baseten#container-registry 9 min1
oss-security·13d ago highCVE-2026-82430: Apache Storm Worker Launcher: Local Privilege Escalation to Root via Container Command Files Chowned to the Tenant#apache-storm#cve-2026-82430#dockerCVE-2026-82430
Full Disclosure·18d ago high[0day-rubbish] Jitterbit Agent 12.8.1.6 (Docker jitterbit/agent:12.8.1.6) Unauthenticated SOAP with hard-coded credentials leading to OS command execution (9.8)#command-injection#docker#hard-coded-credentialsVulnerability 2 sources1
Cyber Security News·18d ago highDell Secure Connect Gateway Vulnerabilities Allow Hackers to Gain Unauthorized Access#cve-2026-61410#cve-2026-80172#cve-2026-80238 3 min
GBHackers·18d ago highDell Secure Connect Gateway Critical Flaws Allow Unauthenticated Remote Code Execution and Admin Access#authentication-bypass#container-escape#dell 3 min
arXiv cs.CR·19d agoSeeing is Not Believing: Breaking the Physical-to-Digital Trust Boundary in Robotics#docker#middleware#remote-attestationVulnerability2
MarkTechPost·21d agoUC Berkeley Researchers Release CUA-Lite, an Open Platform Unifying Sandboxes, Data, Evaluation and RL for Computer-Use Agents#computer-use-agents#cua-lite#docker 4 min1
Lobsters · security·27d agoRootless Docker and Its Hidden Security Trade-Offs#containers#container-security#dockerResearch1