Story perspectives
Over 10,000 Docker Images Expose Sensitive Credentials
12/12/2025
1 of 1
Story summary
- Flare, a Canadian cybersecurity firm, found Docker Hub hosts over 10,000 public container images leaking sensitive credentials.
- The leaks involve credentials from more than 100 companies, including a Fortune 500 firm and a major bank.
- Many images expose active Application Programming Interface keys, especially for artificial intelligence services.
- Flare warns that removing secrets from images is not enough.
- It recommends avoiding embedded secrets and using dedicated secrets management tools.
