malware
Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts
Medium
Summary
A new Docker botnet, Carbonato, is leveraging an unauthenticated Docker API (port 2375), a vulnerability documented since 2013, to compromise hosts and install AI agents. ThreatDown researchers have identified indicators of compromise and recommend defensive measures, including disabling the Docker API and monitoring for suspicious activity.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
