Module Architecture of Docker Image and Container Security


연구 분야: Strategies



학회: International Computer Symposium


초록

The security of Docker images has attracted a lot of attention recently, and the lack of content security checks on Docker images has led users to deploy vulnerable systems. In addition, malicious attackers may inject malware when building the image, and once deployed, it may become a cryptocurrency mining node or leak confidential information on the system. Therefore, it is imperative to establish a complete diagnostic process. In this paper, we propose an architecture of DICDS, which consists of four modules: integrity checker module, vulnerability checker module, malware checker module and suspicious behavior checker module. We can ensure that Docker users are using clean images and containers after the process of DICDS.


Author Profile
Guan-Yu Wang

Department of Computer Science and Information Engineering National Central University Taoyuan Taiwan

Andorra
Author Profile
Hung-Jui Ko

Department of Computer Science Engineering National Chung-Hsing University Tai-Chung Taiwan

Taiwan
Author Profile
Min-Yi Tsai

Department of Computer Science and Information Engineering National Central University Taoyuan Taiwan

Andorra

📄 논문 정보

발행 연도 2023년
인용수 0
출판 국가 Taiwan, Andorra
사이트 Springer
좋아요 수 0

연관 논문 목록 (359건)