News

Docker patched CVE-2025-9074 (CVSS 9.3), a flaw enabling container escape via unauthenticated API, risking host takeover.
A critical vulnerability in Docker Desktop allows attackers to modify the filesystem of Windows hosts to become ...
Missing authentication on the Docker Engine management API for Docker Desktop on Windows and Mac allows attackers to break ...
Docker has patched a critical severity vulnerability in its Desktop app for Windows and macOS which could have allowed threat ...
A critical vulnerability in Docker Desktop for Windows and macOS allows compromising the host by running a malicious ...
Isolation? We've heard of it Docker has patched a critical hole in Docker Desktop that let a container break out and take ...
Learn the key differences between Docker Desktop and Docker Engine to optimize containerization, DevOps workflows, and development setups.
In Docker Desktop, malicious containers can access the host system, protective measures are not effective. An update helps.
Securing Docker servers While Docker Engine API abuse is not something new, it keeps being an issue because administrators do not know how to properly secure their systems.
After if began stealing AWS credentials last summer, the TeamTNT botnet is now also stealing Docker API logins, making the use of firewalls mandatory for all internet-exposed Docker interfaces.