Close
  • Latest News
  • Cybersecurity
  • Big Data and Analytics
  • Cloud
  • Mobile
  • Networking
  • Storage
  • Applications
  • IT Management
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Menu
eWEEK.com
Search
eWEEK.com
  • Latest News
  • Cybersecurity
  • Big Data and Analytics
  • Cloud
  • Mobile
  • Networking
  • Storage
  • Applications
  • IT Management
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Applications
    • Applications
    • Cloud
    • Cybersecurity
    • Development

    Docker Responds to Data Breach and Outlines the Container Future

    By
    SEAN MICHAEL KERNER
    -
    May 1, 2019
    Share
    Facebook
    Twitter
    Linkedin
      Docker Secure by Design

      SAN FRANCISCO – The elephant or rather the whale in the room at DockerCon this week, was the data breach of the Docker Hub, first disclosed on April 26.

      During a keynote address and in a private press session at DockerCon on May 1, Docker executives provided a formal response to the data breach, which impacted 190,000 accounts. The data breach response wasn’t the only thing announced by Docker Inc on day two of DockerCon, as the company behind the eponymous container technology also announced new technology efforts including service mesh integration.

      “There are bad actors in the world and we had a security incident and we have resolved that issue,” Docker CEO Steven Singh said during the media session.

      Docker Inc. is the lead commercial sponsor behind the open-source Docker container technology that enables developers to build, package and deploy applications as containers. The Docker Hub is a popular repository for Docker users to find freely available Docker application images to run.

      During his keynote Docker CTO Kal De provided the assembled Docker community at DockerCon with his commitment to security and to reinforce a security by-design approach for Docker technologies.

      “I will simply share with you that we will continue to do the best we possibly can,” De said. “We must as a company, and we will, take security very, very seriously and stay laser focussed on it.”

      Breach Details

      Docker is currently publicly providing updates on the data breach incident via a dedicated support page. There are still some things that’s aren’t publicly known, such as how long the attackers may have been in the system as well as identification of the root cause of the breach.

      In a response to a question from eWEEK, Singh noted that Docker has engaged in a rigorous forensics and incident response activity to fully understand the Docker Hub data breach.

      “One of the things we have at Docker is a standard incident response function, so that includes bringing in external resources to really do a deep forensic analysis,” Singh said. “It’s a standard professional model for response.”

      Overall Singh sees the breach as an opportunity for his company to improve its processes and help both itself and customers stay secure.

      Service Mesh Support

      Beyond addressing the data breach, Docker announced new capabilities that will be available in tech preview as part of the company’s Docker Enterprise 3.0 release. Among the new features that was announced on the DockerCon keynote stage was support for the open-source Istio service mesh.

      Istio is an emerging technology that has already garnered the backing of big name IT vendors including IBM, AWS, Cisco and Google among others. The Isto service mesh enables a more efficient type of container to container, or microservice to service communications and networking model, by offloading the connectivity to a side car proxy.

      ContainerD Support

      At the core of Docker’s engine is the open-source ContainerD container runtime project, which is an effort that is hosted by the Cloud Native Computing Foundation (CNCF). To date, Docker had only provided support for Containerd as an integrated part of the Docker Enterprise Platform.

      Moving forward, Docker announced that it will also provide commercial support for just the containerd component, for those organizations that only want or need support for that piece and don’t require the full Docker Enterprise platform. With Docker Enteprise as the flagship platform and containerd support at the granular level of support there is the potential for Docker to introduce a mid-tier offering, specifically aimed at small and medium sized businesses (SMBs). Singh said that it is likely that Docker will introduce something in the future that might be a focussed offering for SMBs. 

      “I couldn’t be happier, this company is not just hitting its stride, we’re really solving problems with a deep commitment to our customers and that’s the only way to build a great business, ” Singh said.

      Sean Michael Kerner is a senior editor at eWEEK and InternetNews.com. Follow him on Twitter @TechJournalist.

      MOST POPULAR ARTICLES

      Android

      Samsung Galaxy XCover Pro: Durability for Tough...

      CHRIS PREIMESBERGER - December 5, 2020 0
      Have you ever dropped your phone, winced and felt the pain as it hit the sidewalk? Either the screen splintered like a windshield being...
      Read more
      Cloud

      Why Data Security Will Face Even Harsher...

      CHRIS PREIMESBERGER - December 1, 2020 0
      Who would know more about details of the hacking process than an actual former career hacker? And who wants to understand all they can...
      Read more
      Cybersecurity

      How Veritas Is Shining a Light Into...

      EWEEK EDITORS - September 25, 2020 0
      Protecting data has always been one of the most important tasks in all of IT, yet as more companies become data companies at the...
      Read more
      Big Data and Analytics

      How NVIDIA A100 Station Brings Data Center...

      ZEUS KERRAVALA - November 18, 2020 0
      There’s little debate that graphics processor unit manufacturer NVIDIA is the de facto standard when it comes to providing silicon to power machine learning...
      Read more
      Apple

      Why iPhone 12 Pro Makes Sense for...

      WAYNE RASH - November 26, 2020 0
      If you’ve been watching the Apple commercials for the past three weeks, you already know what the company thinks will happen if you buy...
      Read more
      eWeek


      Contact Us | About | Sitemap

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Property of TechnologyAdvice.
      Terms of Service | Privacy Notice | Advertise | California - Do Not Sell My Info

      © 2020 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×