Uncovering threats in container systems: a study on misconfigured container components컨테이너 시스템의 보안 위협 파악: 잘못 설정된 컨테이너 구성 요소에 대한 연구

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 3
  • Download : 0
DC FieldValueLanguage
dc.contributor.advisor신승원-
dc.contributor.authorChoi, Dongmin-
dc.contributor.author최동민-
dc.date.accessioned2024-07-25T19:31:27Z-
dc.date.available2024-07-25T19:31:27Z-
dc.date.issued2023-
dc.identifier.urihttp://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=1045974&flag=dissertationen_US
dc.identifier.urihttp://hdl.handle.net/10203/320740-
dc.description학위논문(석사) - 한국과학기술원 : 정보보호대학원, 2023.8,[iii, 26 p. :]-
dc.description.abstractThe increasing popularity of cloud computing has led to a significant rise in the usage of container technology. Docker and Kubernetes have emerged as standard tools for managing container systems due to their reliability and flexibility. However, REST APIs on container systems have introduced additional attack vectors. In this paper, we investigate the security threats posed by misconfigured container components that are exposed to the Internet. Our study involves an Internet-scale measurement to assess their prevalence. For this end, we collect a total of 1,003,947 IP addresses and identify renowned institutes, governments, and enterprises which are operating exposed and misconfigured container components, indicating potential compromises. Additionally, we conduct a real-world experiment within multi-branch institutes to identify vulnerabilities in misconfigured container components. By conducting a comprehensive scan of all 150,235 IP addresses associated with an institute, we identify three vulnerable servers among the 57 misconfigured container components. This finding demonstrates the feasibility and profitability of exploiting these containers through targeted attacks. This comprehensive investigation provides insights into the prevalence of misconfigured container components to safeguard container systems from unauthorized access. By addressing these security concerns, organizations can protect the integrity and confidentiality of their containerized environments more effectively.-
dc.languageeng-
dc.publisher한국과학기술원-
dc.subject정보 보안▼a컨테이너 보안▼a클라우드 보안▼a도커▼a쿠버네티스-
dc.subjectInformation security▼aContainer security▼aCloud security▼aDocker▼aKubernetes-
dc.titleUncovering threats in container systems: a study on misconfigured container components-
dc.title.alternative컨테이너 시스템의 보안 위협 파악: 잘못 설정된 컨테이너 구성 요소에 대한 연구-
dc.typeThesis(Master)-
dc.identifier.CNRN325007-
dc.description.department한국과학기술원 :정보보호대학원,-
dc.contributor.alternativeauthorShin, Seungwon-
Appears in Collection
IS-Theses_Master(석사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0