Business Wire

Sysdig Usage Report Finds Shifting Container Security Left is Not Enough

13.1.2021 15:00:00 EET | Business Wire | Press release

Share

Sysdig, Inc., the secure DevOps leader, today announced findings from its Sysdig 2021 Container Security and Usage Report. While usage reveals organizations are shifting left by scanning images during the build phase, DevOps teams are still leaving their environments open to attack. The report also looks at trends, finding a 310 percent growth in container density since 2017.

The fourth annual report reveals how global Sysdig customers of all sizes and across industries are using and securing container environments. This real-world, real-time data provides insight into usage of the nearly one billion containers Sysdig customers run yearly, including security risks, container utilization, and services used. Read the Sysdig 2021 Container Security and Usage blog.

Among its findings, the report states that while 74 percent of customers are scanning before deployment, still more than half (58 percent) of containers are running as root. There are some containers that should run as root—security and system daemons for example—but this is a small portion of total containers. These risky configurations leave easy access to potentially compromise the system and access sensitive data. This finding stresses the need for security throughout the lifecycle of a container image—fixing vulnerabilities is not enough.

Highlights From the Report

Container density grows 170% since 2018

Over the past three years, the median number of containers-per-host more than doubled from 15 in 2018 to 41 today, indicating a growth in efficiency and a shift in cost savings as containers mature. This reveals a continued focus on optimization.

Prometheus continues to grow, 35% YoY

Open source adoption is broader than just Kubernetes as organizations are shifting toward Prometheus as the standard approach to monitoring container environments. The use of Prometheus metrics among Sysdig customers grew 35 percent year-over-year.

Docker down, containerd and CRI-O up 4X

In 2017, Docker represented 99 percent of containers in use at that time. Today, that number has fallen to 50 percent, down from 79 percent in October 2019. While Docker revolutionized containers, organizations are rapidly switching to newer runtimes like containerd and CRI-O.

21% of containers live less than 10 seconds

The ephemeral nature of containers is a unique efficiency advantage, yet it can be a challenge in managing issues around security, health, and performance. The short life of containers reaffirms the need for container-specific tools for security and monitoring. For example, organizations need metric collection with intervals of less than 10 seconds and a detailed record of what occurred when the container was alive.

“With the high-profile breaches we are seeing and the accelerated adoption of containers in production, the container security risk is now on the radar of CISOs. Across millions of containers that we have studied, it’s clear that organizations are shifting security left, but they are neglecting critical best practices,” said Suresh Vasudevan, chief executive officer of Sysdig. “Container security has to span the entire software development lifecycle. Until organizations fix risky configurations, protect their runtime environments, and invest in container forensics, we will see an increase in container security breaches. I expect we will see several high-impact breaches before we release our next report.”

Other Interesting Findings

  • Falco, the open source runtime project for cloud-native environments created by Sysdig and donated to the CNCF, has seen a 300 percent increase in Docker Hub downloads over the last year.
  • The use of golang increased to 66 percent, a 470 percent jump since last year.
  • 63 percent of container images are replaced within two weeks or less, signifying a more frequent code deployment rate.

Learn More About this Report

About Sysdig

Sysdig is driving the secure DevOps movement, empowering organizations to confidently secure containers, Kubernetes, and cloud services. With the Sysdig Secure DevOps Platform, cloud teams secure the build pipeline, detect and respond to runtime threats, continuously validate compliance, and monitor and troubleshoot cloud infrastructure and services. Sysdig is a SaaS platform, built on an open source stack that includes Falco and sysdig OSS, the open standards for runtime threat detection and response. Hundreds of companies rely on Sysdig for container and Kubernetes security and visibility. Learn more at www.sysdig.com.

To view this piece of content from cts.businesswire.com, please give your consent at the top of this page.

Contact information

Amanda McKinney Smith
(703) 473-4051
amanda.smith@sysdig.com

About Business Wire

For more than 50 years, Business Wire has been the global leader in press release distribution and regulatory disclosure.

Subscribe to releases from Business Wire

Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.

Latest releases from Business Wire

IQM Secures €50M Financing to Accelerate Global Growth30.3.2026 09:00:00 EEST | Press release

IQM Finland Oy, a global leader in full-stack superconducting quantum computers (“IQM”, “IQM Quantum Computers” or the “Company”), today announced it has secured a €50 millionfinancing package from funds and accounts managed by BlackRock. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260329996942/en/ IQM Radiance quantum computer is located in IQM's showroom in Espoo, Finland. This facility will support acceleration of IQM’s technology roadmap, fuel R&D, support entry into additional markets, and advance IQM’s leadership in quantum computing. This facility was secured prior to IQM’s recent announcement of plans to become the first publicly listed European quantum computing company through a merger with Real Asset Acquisition Corp (“RAAQ”). The facility lowers IQM’s overall cost of capital and improves the flexibility and diversity of its capital base. “The financing package comes at a pivotal time for IQM, as we build momen

Bureau Veritas and Trade Technologies Join Forces to Streamline Global Trade Operations30.3.2026 08:45:00 EEST | Press release

Bureau Veritas, a global leader in Testing, Inspection, and Certification services (TIC), through its Swiss branch Government Services Division, is pleased to announce a strategic agreement with Trade Technologies, the leading provider of trade finance automation, connectivity and transaction management services. This collaboration is a significant step toward reducing the complexities of international trade operations, particularly in regions where regulatory and inspection controls remain stringent. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260329411683/en/ Addressing Critical Trade Finance Challenges The agreement comes at a pivotal time for global trade. Letters of Credit (LCs) continue to serve as essential instruments in international commerce, particularly across the Middle East and Africa, where counterparty risk, foreign exchange controls, sanctions exposure, and regulatory oversight face ongoing challenges. In

Consortium Led by Axelspace Selected for Japan’s Space Strategy Fund Project “Technology to Enhance Capability of Next Generation Earth Observation Satellites”30.3.2026 02:35:00 EEST | Press release

Axelspace Corporation, Meisei Electric Co., Ltd., ANA HOLDINGS INC., and JIJ Inc. are pleased to announce that their jointly proposed technology development project has been selected for Japan Aerospace Exploration Agency (JAXA)’s Space Strategy Fund under the theme “Technology to Enhance Capability of Next Generation Earth Observation Satellites.” This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20260323044518/en/ Conceptual Diagram of the project. Under this Space Strategy Fund initiative, spectrometers will be newly developed and demonstrated in orbit. In the future, the project envisions the establishment of a satellite constellation capable of observations at different times of the day. Project Summary (Planned) Technology Development Theme: Technology to Enhance Capability of Next Generation Earth Observation Satellites Project Title: Source-Specific CO2 Emission and Uptake Monitoring through Satellite Constellation and Ai

Takeda’s Zasocitinib Delivered Rapid and Durable Skin Clearance in a Convenient Once-Daily Pill, Affirming Promise to Reshape Psoriasis Care28.3.2026 21:00:00 EET | Press release

Takeda(TSE:4502/NYSE:TAK)today announced new data from the two pivotal Phase 3studies of zasocitinib (TAK-279), a next-generation, highly selective oral tyrosine kinase 2 (TYK2) inhibitor, in adults with moderate-to-severe plaque psoriasis (PsO).1 Presented as a late-breaking abstract at the 2026 American Academy of Dermatology (AAD) Annual Meeting, these data show that convenient once-daily oral zasocitinib demonstrated rapid and durable skin clearance with a safety profile consistent with Phase 2b studies.1,2 “Our goal in psoriasis treatment is clear or almost clear skin, and previously this has been achieved primarily with injectable therapies,” said Melinda Gooderham, MSc, MD, FRCPC, dermatologist, SKiN Centre for Dermatology, Peterborough, Ontario, Canada, principal investigator for the Latitude PsO studies and presenting author. “These efficacy and safety results show it’s possible for a once-daily pill to deliver rapid, lasting skin clearance, highlighting the potential of zasoc

Incyte Announces New Positive 54-Week Late-Breaking Data for Povorcitinib in Hidradenitis Suppurativa at the 2026 American Academy of Dermatology (AAD) Annual Meeting28.3.2026 21:00:00 EET | Press release

Incyte (Nasdaq:INCY) today announced 54-week data evaluating the safety and efficacy of povorcitinib (INCB54707), an oral small-molecule highly-selective JAK1 inhibitor, from the pivotal Phase 3 STOP-HS clinical trial program in adult patients (≥18 years) with moderate to severe hidradenitis suppurativa (HS). The late-breaking oral presentation of these data is taking place at the 2026 American Academy of Dermatology (AAD) Annual Meeting, being held March 27-31, 2026, in Denver (Session: S034 – Late-Breaking Research: Session 2. Saturday, March 28, 2026, 1:00-4:00 p.m. MT). “The 54-week results from the STOP-HS program deliver compelling, long-term evidence supporting the potential of povorcitinib for patients with moderate to severe HS,” said Pablo J. Cagnoni, M.D., President and Global Head of Research and Development, Incyte. “Across both studies, povorcitinib demonstrated substantial and durable improvements over time in key measures of treatment success and meaningful clinical ben

In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.

Visit our pressroom
World GlobeA line styled icon from Orion Icon Library.HiddenA line styled icon from Orion Icon Library.Eye