Millions of Docker repos found pushing malware, phishing sites
ID: c037a6ae-cb8e-519c-be81-8407c250d5ca
STIX ID: report--c037a6ae-cb8e-519c-be81-8407c250d5ca
Feed Name: Bleeping Computer
Threat Score
JFrog researchers discovered three large campaigns on Docker Hub that created millions of imageless repositories between 2021 and 2023 — primarily a Downloader campaign that delivered a persistent malicious installer, an eBook Phishing campaign that redirected users to credit-card theft pages, and a Website SEO campaign — leading Docker to remove roughly 3.2 million suspicious repositories.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
