Business Wire

Sysdig Usage Report Finds Shifting Container Security Left is Not Enough

13.1.2021 15:00:00 EET | Business Wire | Press release

Share

Sysdig, Inc., the secure DevOps leader, today announced findings from its Sysdig 2021 Container Security and Usage Report. While usage reveals organizations are shifting left by scanning images during the build phase, DevOps teams are still leaving their environments open to attack. The report also looks at trends, finding a 310 percent growth in container density since 2017.

The fourth annual report reveals how global Sysdig customers of all sizes and across industries are using and securing container environments. This real-world, real-time data provides insight into usage of the nearly one billion containers Sysdig customers run yearly, including security risks, container utilization, and services used. Read the Sysdig 2021 Container Security and Usage blog.

Among its findings, the report states that while 74 percent of customers are scanning before deployment, still more than half (58 percent) of containers are running as root. There are some containers that should run as root—security and system daemons for example—but this is a small portion of total containers. These risky configurations leave easy access to potentially compromise the system and access sensitive data. This finding stresses the need for security throughout the lifecycle of a container image—fixing vulnerabilities is not enough.

Highlights From the Report

Container density grows 170% since 2018

Over the past three years, the median number of containers-per-host more than doubled from 15 in 2018 to 41 today, indicating a growth in efficiency and a shift in cost savings as containers mature. This reveals a continued focus on optimization.

Prometheus continues to grow, 35% YoY

Open source adoption is broader than just Kubernetes as organizations are shifting toward Prometheus as the standard approach to monitoring container environments. The use of Prometheus metrics among Sysdig customers grew 35 percent year-over-year.

Docker down, containerd and CRI-O up 4X

In 2017, Docker represented 99 percent of containers in use at that time. Today, that number has fallen to 50 percent, down from 79 percent in October 2019. While Docker revolutionized containers, organizations are rapidly switching to newer runtimes like containerd and CRI-O.

21% of containers live less than 10 seconds

The ephemeral nature of containers is a unique efficiency advantage, yet it can be a challenge in managing issues around security, health, and performance. The short life of containers reaffirms the need for container-specific tools for security and monitoring. For example, organizations need metric collection with intervals of less than 10 seconds and a detailed record of what occurred when the container was alive.

“With the high-profile breaches we are seeing and the accelerated adoption of containers in production, the container security risk is now on the radar of CISOs. Across millions of containers that we have studied, it’s clear that organizations are shifting security left, but they are neglecting critical best practices,” said Suresh Vasudevan, chief executive officer of Sysdig. “Container security has to span the entire software development lifecycle. Until organizations fix risky configurations, protect their runtime environments, and invest in container forensics, we will see an increase in container security breaches. I expect we will see several high-impact breaches before we release our next report.”

Other Interesting Findings

  • Falco, the open source runtime project for cloud-native environments created by Sysdig and donated to the CNCF, has seen a 300 percent increase in Docker Hub downloads over the last year.
  • The use of golang increased to 66 percent, a 470 percent jump since last year.
  • 63 percent of container images are replaced within two weeks or less, signifying a more frequent code deployment rate.

Learn More About this Report

About Sysdig

Sysdig is driving the secure DevOps movement, empowering organizations to confidently secure containers, Kubernetes, and cloud services. With the Sysdig Secure DevOps Platform, cloud teams secure the build pipeline, detect and respond to runtime threats, continuously validate compliance, and monitor and troubleshoot cloud infrastructure and services. Sysdig is a SaaS platform, built on an open source stack that includes Falco and sysdig OSS, the open standards for runtime threat detection and response. Hundreds of companies rely on Sysdig for container and Kubernetes security and visibility. Learn more at www.sysdig.com.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Amanda McKinney Smith
(703) 473-4051
amanda.smith@sysdig.com

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

Grindr Nominates Three New Directors to Its Board of Directors1.5.2026 00:16:00 EEST | Press release

Grindr Inc. (NYSE: GRND), the Global Gayborhood in Your Pocket™, today announced the nomination of Rob Solomon, Lisa Gersh, and Fadi Hanna to stand for election to its Board of Directors at the Annual Meeting of Shareholders on June 2, 2026. Rob Solomon is a deeply seasoned technology CEO and operator in consumer internet and marketplaces. He has held CEO and COO roles at scaled platforms including GoFundMe, Groupon, and Kayak-predecessor SideStep, and is currently CEO of leading electric aviation company H55. Lisa Gersh is a CEO and long-tenured public company director with deep experience across consumer brands, media, and commerce. She has served on the Hasbro (NASDAQ: HAS) board since 2010 and has led businesses including Oxygen Media, GOOP, and Alexander Wang. Fadi Hanna is Chief Risk Officer at Bloomberg L.P., overseeing enterprise risk across the organization. He previously worked at J.P. Morgan and has served on the board of Immigration Equality. “Over the last few years, we bu

The Empire State Building Celebrates 95 Years as the ‘World’s Most Famous Building’30.4.2026 23:42:00 EEST | Press release

The Empire State Building (ESB), the “World’s Most Famous Building,” will celebrate its 95th anniversary on May 1, 2026, with new offers at the Empire State Building Observation Deck, a special birthday tower lighting display, and a slate of celebrations to honor its legacy and future. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260430693323/en/ The Empire State Building Celebrates 95 Years as the ‘World’s Most Famous Building’ “The Empire State Building celebrates its 95th anniversary, still the ‘World’s Most Famous Building,’ a modernized, sustainability leader as technologically advanced today as the day she was completed, and the winner of #1 Top Attraction in the United States in Tripadvisor’s Travelers’ Choice Awards for 2026,” said Anthony E. Malkin, chairman and CEO of Empire State Realty Trust. Anniversary Offerings and Experiences To mark its 95th anniversary, the Empire State Building will debut new experiences

MRM Health’s Lead Candidate MH002 Granted Fast Track Designation by U.S. FDA for the Treatment of Mild-to-Moderate Ulcerative Colitis30.4.2026 23:17:00 EEST | Press release

MRM Health, a clinical-stage biopharmaceutical company developing therapeutics for immune-mediated diseases, which unlock the power of the microbiome to restore immune balance, today announced that MH002, the Company’s lead rationally designed Live Biotherapeutic Product (LBP) candidate, has been granted Fast Track designation by the U.S. Food and Drug Administration (FDA) for the treatment of mild-to-moderate ulcerative colitis (UC). MH002 today is the most advanced LBP targeting inflammatory bowel disease (IBD)-specific mechanisms and is composed of a rationally designed microbial consortium of six well-characterized commensal strains. The FDA’s Fast Track is a process designed to facilitate the development and expedite the review of drugs to treat serious conditions and fill an unmet medical need. The purpose is to get important drugs to patients earlier. Fast Track designation enables frequent communication with the FDA to discuss the drug's development plan and ensure collection o

Rimini Street Announces Fiscal First Quarter 2026 Financial and Operating Results30.4.2026 23:01:00 EEST | Press release

Rimini Street, Inc., (Nasdaq: RMNI), a global provider of end-to-end enterprise software support, managed services and Agentic AI ERP innovation solutions, and the leading third-party support provider for Oracle, SAP and VMware software, today announced results for the fiscal first quarter ended March 31, 2026. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260430598629/en/ Rimini Street Announces Fiscal First Quarter 2026 Financial and Operating Results “Our first quarter results reflect continued growth and accelerating momentum in our core Rimini Support™ business as organizations turn to the proven Rimini Smart Path™ to execute their global ERP and operational transaction processes faster, better and cheaper with more agility and speed to value – all within existing budgets,” said Seth Ravin, president and CEO, Rimini Street. “We help organizations avoid unnecessary, costly and risky ERP and other enterprise software upg

OpenAI and Yubico Partner to Bring Custom Phishing-Resistant YubiKeys to OpenAI Users30.4.2026 20:13:00 EEST | Press release

Yubico (NASDAQ STOCKHOLM: YUBICO), the pioneer of phishing-resistant authentication and creator of the YubiKey, the gold standard of security keys, today announced an industry-first collaboration with OpenAI, the creator of ChatGPT. Beginning today, people can purchase a new 2-pack set of custom YubiKeys as part of OpenAI’s Advanced Account Security program – enabling them to secure their ChatGPT accounts with security keys, containing the strongest hardware-backed passkeys. Specifically designed for security-conscious users who are at increased risk of targeted digital attacks, the set includes a YubiKey C NFC for tap-to-authenticate on mobile, and a low profile YubiKey C Nano that stays in a port for everyday laptop use – both packed with modern authentication features for the highest level of protection. With OpenAI already using YubiKeys internally to protect their employees and infrastructure from sophisticated phishing, they are now bringing the same level of account security to

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye