Browsing Tag
Docker Hub
2 posts
Docker Fixes ‘Ask Gordon’ AI Flaw That Enabled Metadata-Based Attacks
Pillar Security has identified a critical indirect prompt injection vulnerability in Docker’s ‘Ask Gordon’ assistant. By poisoning metadata on Docker Hub, attackers could bypass security to exfiltrate private build logs and chat history. Discover how the "lethal trifecta" enabled this attack and why updating to Docker Desktop 4.50.0 is essential for developer security.
December 19, 2025
Threat actors hijacking Bitbucket and Docker Hub for Monero mining
According to researchers, both developer resources were also targeted last year for Monero mining but now the campaign has resurfaced.
March 5, 2021