Skip to main content
Docker

Docker

System softwareWikipedia

Search complete. 907 mentions across 288 episodes found for "Docker".

Sep 11, 2026

Chris OliverHOST
54:58
So then it goes and reads the source code for Campfire.
Chris OliverHOST
55:02
And Claude then was like, oh, they've hard-coded this so that it uses the Redis host name because it's using the Docker container name.
Chris OliverHOST
55:12
And let me just go in Hatchbox, create these two overrides during deployments and override these two files.
Chris OliverHOST
55:19
And then that way you can use the environment variable to change the Redis URL to what Hatchbox needs.
Isaac AskewHOST
7:41
yeah i think this might be why a lot of um companies like data dog and snowflake and um what is the other one that's like data centric similar to data dog um new relic maybe or grafana um they've been experiencing a big boom lately um uh when it comes to ai because I suspect it's having all this logging and telemetry and other things that are really useful for understanding how your system's behaving as extra context to feed that humans can't just quickly read.
Isaac AskewHOST
8:17
Same thing for like... very quickly if I try to get my Docker network to come up and something happens.
Isaac AskewHOST
8:25
The error might not be very obvious, but I can say, Claude, can you check and see why it didn't work? And it'll look through all system logs faster than I could type it and go, ah, I can't see.
Isaac AskewHOST
8:34
It's because of this particular issue here.
Aaran LeylandHOST
15:30
Now, look at what the defenses were doing at that moment.
Aaran LeylandHOST
15:34
Docker sandbox.
Aaran LeylandHOST
15:36
The malicious code ran before it.
Aaran LeylandHOST
15:38
Environment sanitizer.
Aaron LelandHOST
15:30
Now, look at what the defenses were doing at that moment.
Aaron LelandHOST
15:34
Docker sandbox, the malicious code ran before it.
Aaron LelandHOST
15:38
Environment sanitizer, the process had already inherited the original environment.
Aaron LelandHOST
15:45
Tool allow list, the model never requested a tool.
Nathan LabenzHOST
77:36
So what are you doing to secure these sandboxes? I think that's the first question we got to start with.
Amir HaghighatGUEST
77:43
yeah let's let's do it uh and just know that you know the the acquisition is now about five days old uh but we have been working with black soul we've been a customer of black soul ourselves for rl rollouts and some of the agentic use cases and uh and that's been some of our first questions as well look when it comes to sandboxes people mean different things as it could be as simple as you bring up a Docker container, run some code on it, and then kill it.
Amir HaghighatGUEST
78:14
And that really doesn't give you the kind of security boundary that you need.
Amir HaghighatGUEST
78:19
What does are VMs or micro VMs, which is, you don't see every sandbox provider actually use.
Aaron LeylandHOST
15:30
Now, look at what the defenses were doing at that moment.
Aaron LeylandHOST
15:34
Docker sandbox, the malicious code ran before it.
Aaron LeylandHOST
15:38
Environment sanitizer, the process had already inherited the original environment.
Aaron LeylandHOST
15:45
Tool allow list, the model never requested a tool.
Aaron LeylandHOST
15:30
Now, look at what the defenses were doing at that moment.
Aaron LeylandHOST
15:34
Docker sandbox.
Aaron LeylandHOST
15:36
The malicious code ran before it.
Aaron LeylandHOST
15:38
Environment sanitizer.
MattiasHOST
0:16
That's my plan.
MattiasHOST
0:19
And today we are revisiting Docker.
MattiasHOST
0:25
Oh,
PaulinaHOST
0:25
good,
speaker_2NARRATOR
0:25
Docker.
PaulinaHOST
0:27
It's been a while, yeah? I think it was before I joined.
MattiasHOST
0:30
Yes, last episode was in November of 2022.
MattiasHOST
0:37
That's episode 45, if you want to look it up.
MattiasHOST
7:06
So-
PaulinaHOST
7:06
Even on the stable one, it was always the same question, you know, on the all interviews I was getting for the Docker, never put it to the latest one, always ping the version and so on.
MattiasHOST
7:14
Yeah.
AndreHOST
7:16
Yeah.
AndreHOST
10:43
So I do think that you should, uh, consider it's not trustable because, yes, there are vulnerabilities in packages, but your own developers can introduce issues, so there will be always something in there.
AndreHOST
10:59
Obviously, you should put into the effort to re-reduce and minimize the number of possible issues to prevent the intrusions, but you just should think of it that it is vulnerable, someone will get in, so you should not rely on just patching and actually architect around that.
AndreHOST
11:21
So for instance, you're running in Docker, use, uh, scratch images.
AndreHOST
11:26
Like for instance, you're running, like, Golang applications.
GCP Bytes

GCP Bytes

049: The Slop

Sep 11 · 3 Mentions

Ian BrownHOST
11:37
Fatal flaw.
Ian BrownHOST
11:39
So OXCC has got an article out about how any user process can escalate to root in the way that Omaki does its default Docker configuration.
Ian BrownHOST
11:52
So basically, you know, details here how you can actually do it.
Ian BrownHOST
11:57
But, yeah, the short and sweet of it is that, you know, if you run Docker on Omaki, it can break out and become root on the desktop.
Ian BrownHOST
12:05
Oh, nice.
Ian BrownHOST
12:06
Yeah.

36 MINS LATER

Dave WallHOST
48:20
I was going to say, surely the pricing will be more expensive, but no, it reckons here that a cloud-run instance with one vCPU and one gig of memory running continuously for 30 days would only cost $570.
Dave WallHOST
48:32
Yep.

278 more episodes mention Docker.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.