Sysdig Security and Usage Report Finds More than 75% of Running Containers Have Severe Vulnerabilities
Sysdig, Inc., the unified container and cloud security leader, today announced findings from its Sysdig 2022 Cloud-Native Security and Usage Report. The report reveals that as teams rush to expand, container security and usage best practices are sacrificed, leaving openings for attackers. In addition, operational controls lag, potentially resulting in hundreds of thousands of dollars being wasted on poor capacity planning. All of these are indicators that cloud and container adoption is maturing beyond early, “expert” adopters, but moving quickly with an inexperienced team can increase risk and cost.
The fifth annual report reveals how global Sysdig customers of all sizes and across industries are using and securing cloud and container environments. This real-world, real-time data provides insight into usage of billions of containers run yearly, including usage trends, and security, compliance, runtime, and cloud practices.
Read the highlights in the Sysdig 2022 Cloud-Native Security And Usage Report blog.
Highlights From the Report
-
75% of containers have “high” or “critical” patchable vulnerabilities
Organizations take educated risks for the sake of moving quickly; however, 85% of images that run in production contain at least one patchable vulnerability. Furthermore, 75% of images contain patchable vulnerabilities of “high” or “critical” severity. This implies a fairly significant level of risk acceptance, which is not unusual for high agility operating models, but can be very dangerous.
-
Nearly 3 out of every 4 accounts contain exposed S3 buckets
Seventy-three percent of cloud accounts contain exposed S3 buckets and 36% of all existing S3 buckets are open to public access. The amount of risk associated with an open bucket varies according to the sensitivity of the data stored there. However, leaving buckets open is rarely necessary and it's usually a shortcut that cloud teams should avoid.
-
27% of users have unnecessary root access, most without MFA enabled
Cloud security best practices and the CIS Benchmark for AWS indicate that organizations should avoid using the root user for administrative and daily tasks, yet 27% of organizations continue to do so. Forty-eight percent of customers don’t have multi-factor authentication (MFA) enabled on these highly privileged accounts, which makes it easier for attackers to compromise the organization if the account credentials are leaked or stolen.
-
$400,000+ per cluster overspend on cloud service provider bills
Capacity management and planning are difficult in fast changing Kubernetes environments and limits on how many resources a container can use can go undefined. Sixty percent of containers had no CPU limits defined and 51% had no memory limits defined. Of those clusters that did have CPU limits, an average of 34% of CPU cores were unused. Without knowing the utilization of clusters, organizations could be wasting money due to overallocation or causing performance issues by running out of resources. Given the average cost of Amazon Web Services CPU pricing, an organization with 20 Kubernetes clusters could be overspending up to $400,000 yearly.
Other Interesting Findings
- Non-humans outnumber humans in the cloud, with 88% of roles assigned to nonhumans, such as applications, cloud services, and commercial tools. While this isn’t necessarily a bad thing, a best practice is to follow the principle of least privilege and explicitly assign the minimum necessary permissions to each role. Granting excessive permissions is fast and easy for admins but adds risk.
- Container density grew again in 2021, a nearly 15% increase year-over year and a 360% increase in four years. As containers increase in density, setting resource limits becomes more important, a best practice not being followed as DevOps teams rush to expand cloud environments.
- Massive growth for Falco, the CNCF open-source project contributed by Sysdig. The project now has over 40 million downloads, which represents 370% growth since becoming an Incubating project in January 2020. Falco has secured its position as the runtime cloud and container security standard.
- Containers running as root continue to rise. Forty-eight percent of images are scanned before runtime, yet 76% of containers are running as root, a 31% increase from last year. Slow adoption of best practices may indicate broad adoption of container technologies by organizations that have not yet evolved their DevSecOps processes. Privileged containers are easier for attackers to compromise.
Learn More About the Report
- Download the full Sysdig 2022 Cloud-Native Security And Usage Report.
- Read the report highlights in this year’s blog.
- View the interactive infographic.
- Read the previous reports.
About Sysdig
Sysdig is driving the standard for cloud and container security. The company pioneered cloud-native runtime threat detection and response by creating Falco and Sysdig as open source standards and key building blocks of the Sysdig platform. With the platform, teams can find and prioritize software vulnerabilities, detect and respond to threats, and manage cloud configurations, permissions and compliance. From containers and Kubernetes to cloud services, teams get a single view of risk from source to run, with no blind spots, no noise, no black boxes. The largest and most innovative companies around the world rely on Sysdig.
To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.
View source version on businesswire.com: https://www.businesswire.com/news/home/20220126005036/en/
Contact information
Media Contacts
Amanda McKinney Smith
(703) 473-4051
amanda.smith@sysdig.com
About Business Wire
For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
ROYC Acts as the Structuring and Financial Technology Partner for Riverside for European Wealth Access Fund16.5.2025 09:30:00 EEST | Press release
ROYC, the leading provider of complete private markets operating systems, announces the structuring of a new access fund for Private Wealth launched in collaboration with The Riverside Company. The Riverside Company is a global private equity firm focused on investing in growing businesses valued at up to $400 million. Since its founding in 1988, Riverside has made more than 1,000 investments and today has over $12 billion in assets under management. The firm's international private equity and structured capital portfolios include more than 140 companies. The Riverside’s proven investment strategy of acquiring and developing high-potential European SMEs in resilient, growth-oriented sectors, including technology and software, healthcare, advanced manufacturing and consumer products. “This fund represents a unique opportunity for wealth investors to access value creation generally reserved for institutional investors,” says Karsten Langer, Managing Partner at Riverside Europe and contin
Rimini Street Announces Upcoming 2025 Investor Conference Schedule15.5.2025 23:51:00 EEST | Press release
Rimini Street, Inc. (Nasdaq: RMNI), a global provider of end-to-end enterprise software support and innovation solutions, and the leading third-party support provider for Oracle, SAP and VMware software, today announced that Michael L. Perica, chief financial officer, and Dean Pohl, vice president, treasurer and investor relations, will be presenting and meeting with investors one-on-one and in small group meetings at the following conferences: This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250515374696/en/ Rimini Street Announces Upcoming 2025 Investor Conference Schedule May 28, 2025: Craig-Hallum 22nd Annual Institutional Investor Conference, Minneapolis May 29, 2025: TD Cowen 53rd Annual TMT Conference, New York City Fireside Chat: 1:15 pm Eastern, webcast link June 24-26, 2025: Roth 15th Annual London Conference, London To schedule a meeting please contact your salesperson or Rimini Street Investor Relations at IR@rimin
Incyte Announces FDA Approval of Zynyz ® (retifanlimab-dlwr) Making it the First and Only Approved First-Line Treatment for Advanced Anal Cancer Patients in the United States15.5.2025 21:30:00 EEST | Press release
Incyte (Nasdaq:INCY) today announced that the U.S. Food and Drug Administration (FDA) has approved Zynyz® (retifanlimab-dlwr), a humanized monoclonal antibody targeting programmed death receptor-1 (PD-1), in combination with carboplatin and paclitaxel (platinum-based chemotherapy) for the first-line treatment of adult patients with inoperable locally recurrent or metastatic squamous cell carcinoma of the anal canal (SCAC). In addition, the FDA granted approval for Zynyz as a single agent for the treatment of adult patients with locally recurrent or with metastatic SCAC with disease progression on or intolerance to platinum-based chemotherapy. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250508024371/en/ Zynyz logo "The FDA approval of Zynyz marks a pivotal moment, bringing effective combination and monotherapy treatment options to patients with advanced anal cancer after decades of limited innovation," said Hervé Hoppenot,
DDC Announces Record 2024 Growth and Strategic Bitcoin Reserve Initiative in Shareholder Letter by Founder & CEO Norma Chu15.5.2025 21:23:00 EEST | Press release
DDC Enterprise Ltd. (NYSEAM: DDC), today released its 2024 full year results alongside a Shareholder Letter from Founder, Chairwoman, and CEO Norma Chu, underscoring the company’s positive financial performance and unveiling a pioneering Bitcoin accumulation strategy poised to redefine long-term value creation. To Our Valued Shareholders, 2024 was a year of transformative growth and strategic milestones for DDC. I am thrilled to share that we not only met our financial forecasts but exceeded expectations, delivering strong performance across key metrics while laying the groundwork for an even more exciting future. As we enter 2025, our momentum is accelerating, driven by disciplined execution and a bold new chapter in our corporate strategy. 2024 Financial & Operational Highlights Revenue Growth: USD 37.4 million, a 33% year-over-year increase, propelled by the strategic acquisition of U.S. brands and sustained resilience in our core China operations. Margin Expansion: Gross profit mar
Ras Al Khaimah’s Strong Economic and Investment Environment Validated by Fitch Affirmation of ‘A+’ Credit Rating, With Stable Outlook15.5.2025 21:18:00 EEST | Press release
Ras Al Khaimah’s strategic approach to sustainable, cross-sector growth and strong economic and investment environment has been validated by international credit rating agency Fitch, which reaffirmed the rating at ‘A+’ with a stable outlook. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20250515907689/en/ Ras Al Khaimah’s strong economic and investment environment validated by Fitch affirmation of ‘A+’ credit rating, with Stable Outlook (Photo: AETOSWire) Ras Al Khaimah Government welcomed the announcement as an endorsement of the Emirate’s resilient and expanding economy, sound fiscal management and the clear vision and unwavering commitment of its leadership to sustainable, long-term development and growth. The Emirate’s landmark tourism projects, including a major integrated resort, luxury hotels and world-class leisure facilities, combined with a surge in real estate revenue, are creating opportunities for investors, driv
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom