← Back to context

Comment by wswin

2 days ago

Containers prevent this kind of info stealing greatly, only explicitly provided creds would be leaked.

Containers can mean many things, if you mean plain docker default configured containers then no, they are a packaging mechanism not safe environment by themselves.

  • They don't have access to the host filesystem nor environment variables and this attack wouldn't work.