Monero mining software distributed through malicious docker images

“At least 30 malicious images in Docker Hub, with a collective 20 million downloads, have been used to spread cryptomining malware, according to an analysis.”

What Tom said appears to have come true, if you download any software, know where it comes from ,who makes it and if they would insert dodgy code in the original file or in an update

Yup, tweeted about it a few days ago and mentioned it here this morning in a discussion Docker or similar inside VMs? - #4 by Oceanwatcher

How would you know if its in your docker image?

Check your cpu usage, if it’s over where it should be then start digging.

There should also be a list out there with all the effected containers