docker / hub-feedback

Feedback and bug reports for the Docker Hub
https://hub.docker.com
233 stars 48 forks source link

[pauseyop/pause] Report malicious image #2319

Closed prasadmadanayake closed 11 months ago

prasadmadanayake commented 1 year ago

Hi, I like to report this malicious image https://hub.docker.com/r/pauseyop/pause which seems to be an a miner. This got installed in a faulty k8s cluster.

Regards, prasadmadanayake

bs3vcenk commented 11 months ago

Seems to also be linked to https://hub.docker.com/r/pauseyyf/pause too, there's also a report by CrowdStrike identifying this as a cryptomining campaign: https://www.crowdstrike.com/blog/crowdstrike-discovers-first-ever-dero-cryptojacking-campaign-targeting-kubernetes/

happyslappykat commented 11 months ago

Hi All, Circling back here. Thank you for the report on both counts and sorry for a belated response in the case of @prasadmadanayake's initial report.

Both users have been taken down.

Best, Kat