This paper presents a comprehensive framework for assessing security risks in Docker container environments. It analyzes major attack vectors using the MITRE ATT&CK framework, identifies key vulnerabilities, and proposes mitigation strategies to enhance container security. The study follows a lifecycle-based approach covering pre-deployment, runtime, and post-incident phases. By integrating industry best practices and real-world case studies, the paper provides a practical guide for improving container security posture.
Abhishek Kumar (Tue,) studied this question.