Segurança em docker multiusuário: avaliação de riscos de privelege escalation e data tempering
Data
Autor(es)
Título da Revista
ISSN da Revista
Título de Volume
Editor
Abstract
The adoption of Docker in multi-user environments has grown significantly due to its efficiency and portability. However, insecure configurations—such as granting access to the docker group—create critical vulnerabilities for Privilege Escalation and Data Tampering attacks. This study analyzes these risks through a case study at IFMG, where the improper use of docker.sock was identified. To quantify this exposure, we propose the Integrity Violation Exposure Index (IEVI), based on the DREAD framework, and introduce IntegrityGuard, a tool for automated diagnosis. Results demonstrate that adopting Docker Rootless mode drastically reduces the attack surface, lowering the IEVI from 100 to 32 and ensuring greater resilience in shared infrastructures under Zero Trust principles.
