โ˜ ๏ธ ghrc.io Appears to be Malicious

๏ฝข All signs point to this being a credential stealing typo-squatting attack. Credentials would be stolen only if you stored credentials for the ghrc.io registry, because clients wonโ€™t send credentials for a different host to ghcr.io ๏ฝฃ

https://bmitch.net/blog/2025-08-22-ghrc-appears-malicious/

#cybersecurity #opensource #containers

Added ๐—จ๐—ฃ๐——๐—”๐—ง๐—˜ ๐Ÿฎ [UPDATE 2] to ๐—ก๐—ฒ๐˜„ ๐—ท๐—บ๐—ผ๐—ฟ๐—ฒ(๐Ÿด) ๐—™๐—ฟ๐—ฒ๐—ฒ๐—•๐—ฆ๐—— ๐—๐—ฎ๐—ถ๐—น๐˜€ ๐—Ÿ๐—ถ๐˜€๐˜/๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ ๐—ง๐—ผ๐—ผ๐—น [New jmore(8) FreeBSD Jails List/Manage Tool] article.

Now with CPU/RAM info.

https://vermaden.wordpress.com/2024/11/22/new-jless-freebsd-jails-list-manage-tool#UPDATE2

#verblog #containers #freebsd #jails #jexec #jls #jmore

Added ๐—จ๐—ฃ๐——๐—”๐—ง๐—˜ ๐Ÿฎ [UPDATE 2] to ๐—ก๐—ฒ๐˜„ ๐—ท๐—บ๐—ผ๐—ฟ๐—ฒ(๐Ÿด) ๐—™๐—ฟ๐—ฒ๐—ฒ๐—•๐—ฆ๐—— ๐—๐—ฎ๐—ถ๐—น๐˜€ ๐—Ÿ๐—ถ๐˜€๐˜/๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ ๐—ง๐—ผ๐—ผ๐—น [New jmore(8) FreeBSD Jails List/Manage Tool] article.

Now with CPU/RAM info.

https://vermaden.wordpress.com/2024/11/22/new-jless-freebsd-jails-list-manage-tool#UPDATE2

#verblog #containers #freebsd #jails #jexec #jls #jmore

๏ฝข Docker is essentially a sandwich of disk images where you can shove absolutely anything, and then these images get executed by running whatever legacy software youโ€™ve crammed in there, regardless of how horrific or inconsistent it might be, with zero behavioral controls ๏ฝฃ

andreafortuna.org/2025/06/20/u

sef
sef boosted

What lightweight monitoring option can I run that will give me historical stats on memory and cpu for both the host and each container? I'm trying to track down a random timeout (suspecting caused by cpu spikes) at exactly 2am on some nights.

Should run as a docker container. Thanks!

#docker #containers #monitoring #boost #selfhosted #homelab

What lightweight monitoring option can I run that will give me historical stats on memory and cpu for both the host and each container? I'm trying to track down a random timeout (suspecting caused by cpu spikes) at exactly 2am on some nights.

Should run as a docker container. Thanks!

#docker #containers #monitoring #boost #selfhosted #homelab

Added ๐—จ๐—ฃ๐——๐—”๐—ง๐—˜ ๐Ÿญ - ๐—ง๐—ต๐—ผ๐˜‚๐—ด๐—ต๐˜๐˜€ ๐—”๐—ณ๐˜๐—ฒ๐—ฟ ๐—–๐—ผ๐—บ๐—บ๐—ฒ๐—ป๐˜๐˜€ to the ๐—™๐—ฟ๐—ฒ๐—ฒ๐—•๐—ฆ๐—— ๐—๐—ฎ๐—ถ๐—น๐˜€ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† article.

https://vermaden.wordpress.com/2025/04/11/freebsd-jails-security/

#containers#CVE #docker #freebsd #jail #jails #linux #podman #security #server #vnet #cve