Business Wire

Sysdig Usage Report Finds Shifting Container Security Left is Not Enough

Share

Sysdig, Inc., the secure DevOps leader, today announced findings from its Sysdig 2021 Container Security and Usage Report. While usage reveals organizations are shifting left by scanning images during the build phase, DevOps teams are still leaving their environments open to attack. The report also looks at trends, finding a 310 percent growth in container density since 2017.

The fourth annual report reveals how global Sysdig customers of all sizes and across industries are using and securing container environments. This real-world, real-time data provides insight into usage of the nearly one billion containers Sysdig customers run yearly, including security risks, container utilization, and services used. Read the Sysdig 2021 Container Security and Usage blog.

Among its findings, the report states that while 74 percent of customers are scanning before deployment, still more than half (58 percent) of containers are running as root. There are some containers that should run as root—security and system daemons for example—but this is a small portion of total containers. These risky configurations leave easy access to potentially compromise the system and access sensitive data. This finding stresses the need for security throughout the lifecycle of a container image—fixing vulnerabilities is not enough.

Highlights From the Report

Container density grows 170% since 2018

Over the past three years, the median number of containers-per-host more than doubled from 15 in 2018 to 41 today, indicating a growth in efficiency and a shift in cost savings as containers mature. This reveals a continued focus on optimization.

Prometheus continues to grow, 35% YoY

Open source adoption is broader than just Kubernetes as organizations are shifting toward Prometheus as the standard approach to monitoring container environments. The use of Prometheus metrics among Sysdig customers grew 35 percent year-over-year.

Docker down, containerd and CRI-O up 4X

In 2017, Docker represented 99 percent of containers in use at that time. Today, that number has fallen to 50 percent, down from 79 percent in October 2019. While Docker revolutionized containers, organizations are rapidly switching to newer runtimes like containerd and CRI-O.

21% of containers live less than 10 seconds

The ephemeral nature of containers is a unique efficiency advantage, yet it can be a challenge in managing issues around security, health, and performance. The short life of containers reaffirms the need for container-specific tools for security and monitoring. For example, organizations need metric collection with intervals of less than 10 seconds and a detailed record of what occurred when the container was alive.

“With the high-profile breaches we are seeing and the accelerated adoption of containers in production, the container security risk is now on the radar of CISOs. Across millions of containers that we have studied, it’s clear that organizations are shifting security left, but they are neglecting critical best practices,” said Suresh Vasudevan, chief executive officer of Sysdig. “Container security has to span the entire software development lifecycle. Until organizations fix risky configurations, protect their runtime environments, and invest in container forensics, we will see an increase in container security breaches. I expect we will see several high-impact breaches before we release our next report.”

Other Interesting Findings

  • Falco, the open source runtime project for cloud-native environments created by Sysdig and donated to the CNCF, has seen a 300 percent increase in Docker Hub downloads over the last year.
  • The use of golang increased to 66 percent, a 470 percent jump since last year.
  • 63 percent of container images are replaced within two weeks or less, signifying a more frequent code deployment rate.

Learn More About this Report

About Sysdig

Sysdig is driving the secure DevOps movement, empowering organizations to confidently secure containers, Kubernetes, and cloud services. With the Sysdig Secure DevOps Platform, cloud teams secure the build pipeline, detect and respond to runtime threats, continuously validate compliance, and monitor and troubleshoot cloud infrastructure and services. Sysdig is a SaaS platform, built on an open source stack that includes Falco and sysdig OSS, the open standards for runtime threat detection and response. Hundreds of companies rely on Sysdig for container and Kubernetes security and visibility. Learn more at www.sysdig.com.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Amanda McKinney Smith
(703) 473-4051
amanda.smith@sysdig.com

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

SII Begins Mass Production of the World’s Smallest (1.0 × 0.8 × 0.32mm) Tuning-Fork Crystal Resonator “SC-10S”9.12.2025 04:00:00 EET | Press release

Seiko Instruments Inc. (President: Yoichi Endo; Headquarters: Chiba City, Chiba Prefecture; hereinafter “SII”) will begin mass production of the “SC-10S” (32.768kHz), the world’s smallest* tuning-fork crystal resonator measuring 1.0 × 0.8mm, starting in April 2026. *Based on SII research as of November 2025. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251202800779/en/ Product Image-1 [Background of Development] SII has already been mass-producing the “SC-12S” (32.768kHz), one of the world’s smallest tuning-fork crystal resonators at 1.2 × 1.0mm. As wearable devices such as smart rings and smartwatches, as well as IoT devices, continue to become smaller, the electronic components built into these devices are increasingly required to support high-density mounting, low power consumption, and high performance. To meet these needs, SII leveraged its proprietary photolithography technology to develop and mass-produce the world’

Verimatrix: Signing of an Agreement for the Sale of XTD Assets (Code and Application Protection) to Guardsquare8.12.2025 18:45:00 EET | Press release

Regulatory News: VERIMATRIX (Euronext Paris: VMX, FR0010291245), a leading provider of user security solutions for a safer connected world, announces the signing of an agreement with Belgium-based Guardsquare, the leading provider of mobile application security, for the sale of its Extended Threat Defense (XTD) assets. Guardsquare, the creators of the open-source optimization tool, ProGuard, offers the most complete mobile application security platform on the market spanning automated testing and multi-layered protection, real time threat monitoring, and app attestation. Guardsquare’s 975+ customers are located in more than 95 countries and represent all major industries. Launched in 2021, Verimatrix's Extended Threat Defence (XTD) business is composed of a group of cybersecurity experts specialised in protecting mobile, web and desktop applications. Using a range of innovative solutions, XTD solutions predict, detect and respond to threats before their targets are compromised. Over th

WNBA Champion Sabrina Ionescu Becomes Global Brand Ambassador for Ant International8.12.2025 18:00:00 EET | Press release

Four-time WNBA All-Star Sabrina Ionescu today becomes a new Global Brand Ambassador for Ant International, a leading global provider of digital payments, digitisation, and financial technology. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251208536426/en/ The partnership is built on a shared commitment to creating a more inclusive and sustainable world through empowering underserved communities and youth groups with sports and technology innovation. It marks an important step in Ant International’s journey to foster growth and expand access to financial tools through innovative technology. Ionescu serves as the first Ant International global brand ambassador from North America. “Sabrina embodies the spirit of perseverance and the passion for excellence that is driving young talents and small businesses around the world to uplift their communities,” said Douglas Feagin, President of Ant International. “As a legend in a spor

SABCS 2025: REVEAL GENOMICS Presents Major Advance in Predicting Brain Metastasis in HER2+ Breast Cancer8.12.2025 17:20:00 EET | Press release

REVEAL GENOMICS, S.L., a Barcelona-based biotechnology company focused on advancing precision oncology through biomarker innovation, announced today the presentation of seven studies at the upcoming San Antonio Breast Cancer Symposium (SABCS) 2025, held December 9–12 in San Antonio, Texas. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251208979141/en/ These abstracts showcase the growing clinical utility and innovation of the company’s proprietary RNA platform and underscore REVEAL GENOMICS’ commitment to improving outcomes for individuals with breast cancer. Across all studies, REVEAL GENOMICS and its collaborators analyzed more than 1,300 tumor samples from individuals with HER2-positive, ER-negative, and triple-negative breast cancer—one of the most extensive genomic contributions to SABCS 2025. Seven independent studies validate the performance and clinical impact of REVEAL GENOMICS’ precision oncology platform New HER2

NetApp Advances EMEA & LATAM Presence with Appointment of Willem Hendrickx as Customer Demand for AI Accelerates8.12.2025 17:15:00 EET | Press release

NetApp (NASDAQ: NTAP), the intelligent data infrastructure company, today announced the appointment of Willem Hendrickxas Senior Vice President and General Manager, EMEA & LATAM, effective January 5, 2026. Hendrickxwill lead NetApp’s business strategy, go-to-market execution, and partner engagement across Europe, the Middle East, Africa, and Latin America. Reporting to NetApp President César Cernuda, Hendrickx brings a deep regional knowledge and track record of building high-performing teams, further enabling the acceleration of NetApp’s international footprint by helping global customers navigate the evolving demands of hybrid cloud and AI-driven data infrastructure. Hendrickx holds a Master’s degree in Applied Economics from KU Leuven and is based in Brussels, Belgium. “Willem joins NetApp at a pivotal time as customer demand surges for intelligent, AI-driven, cloud-enabled data infrastructure globally,” said César Cernuda, President, NetApp. “This appointment underscores our commit

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye