Uncovering threats in container systems: a study on misconfigured container components컨테이너 시스템의 보안 위협 파악: 잘못 설정된 컨테이너 구성 요소에 대한 연구

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 4
  • Download : 0
The increasing popularity of cloud computing has led to a significant rise in the usage of container technology. Docker and Kubernetes have emerged as standard tools for managing container systems due to their reliability and flexibility. However, REST APIs on container systems have introduced additional attack vectors. In this paper, we investigate the security threats posed by misconfigured container components that are exposed to the Internet. Our study involves an Internet-scale measurement to assess their prevalence. For this end, we collect a total of 1,003,947 IP addresses and identify renowned institutes, governments, and enterprises which are operating exposed and misconfigured container components, indicating potential compromises. Additionally, we conduct a real-world experiment within multi-branch institutes to identify vulnerabilities in misconfigured container components. By conducting a comprehensive scan of all 150,235 IP addresses associated with an institute, we identify three vulnerable servers among the 57 misconfigured container components. This finding demonstrates the feasibility and profitability of exploiting these containers through targeted attacks. This comprehensive investigation provides insights into the prevalence of misconfigured container components to safeguard container systems from unauthorized access. By addressing these security concerns, organizations can protect the integrity and confidentiality of their containerized environments more effectively.
Advisors
신승원researcher
Description
한국과학기술원 :정보보호대학원,
Publisher
한국과학기술원
Issue Date
2023
Identifier
325007
Language
eng
Description

학위논문(석사) - 한국과학기술원 : 정보보호대학원, 2023.8,[iii, 26 p. :]

Keywords

정보 보안▼a컨테이너 보안▼a클라우드 보안▼a도커▼a쿠버네티스; Information security▼aContainer security▼aCloud security▼aDocker▼aKubernetes

URI
http://hdl.handle.net/10203/320740
Link
http://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=1045974&flag=dissertation
Appears in Collection
IS-Theses_Master(석사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0