{"id":"https://openalex.org/W4382655557","doi":"https://doi.org/10.1109/svcc56964.2023.10165201","title":"Investigation and Countermeasure toward Unintentional Access to Docker Container","display_name":"Investigation and Countermeasure toward Unintentional Access to Docker Container","publication_year":2023,"publication_date":"2023-05-17","ids":{"openalex":"https://openalex.org/W4382655557","doi":"https://doi.org/10.1109/svcc56964.2023.10165201"},"language":"en","primary_location":{"id":"doi:10.1109/svcc56964.2023.10165201","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/svcc56964.2023.10165201","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 Silicon Valley Cybersecurity Conference (SVCC)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5107212213","display_name":"Yueyang Li","orcid":null},"institutions":[{"id":"https://openalex.org/I69356397","display_name":"Xi\u2019an Jiaotong-Liverpool University","ror":"https://ror.org/03zmrmn05","country_code":"CN","type":"education","lineage":["https://openalex.org/I69356397"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yueyang Li","raw_affiliation_strings":["Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123","institution_ids":["https://openalex.org/I69356397"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101697239","display_name":"Luyi Li","orcid":"https://orcid.org/0009-0001-5954-0066"},"institutions":[{"id":"https://openalex.org/I69356397","display_name":"Xi\u2019an Jiaotong-Liverpool University","ror":"https://ror.org/03zmrmn05","country_code":"CN","type":"education","lineage":["https://openalex.org/I69356397"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Luyi Li","raw_affiliation_strings":["Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123","institution_ids":["https://openalex.org/I69356397"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101314552","display_name":"Ruxue Luo","orcid":null},"institutions":[{"id":"https://openalex.org/I69356397","display_name":"Xi\u2019an Jiaotong-Liverpool University","ror":"https://ror.org/03zmrmn05","country_code":"CN","type":"education","lineage":["https://openalex.org/I69356397"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Ruxue Luo","raw_affiliation_strings":["Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123","institution_ids":["https://openalex.org/I69356397"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101413309","display_name":"Yuzhen Chen","orcid":"https://orcid.org/0009-0005-9076-4390"},"institutions":[{"id":"https://openalex.org/I69356397","display_name":"Xi\u2019an Jiaotong-Liverpool University","ror":"https://ror.org/03zmrmn05","country_code":"CN","type":"education","lineage":["https://openalex.org/I69356397"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yuzhen Chen","raw_affiliation_strings":["Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123","institution_ids":["https://openalex.org/I69356397"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5000003856","display_name":"Arijet Sarker","orcid":"https://orcid.org/0000-0002-7911-6625"},"institutions":[{"id":"https://openalex.org/I888729015","display_name":"University of Colorado Colorado Springs","ror":"https://ror.org/054spjc55","country_code":"US","type":"education","lineage":["https://openalex.org/I888729015"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Arijet Sarker","raw_affiliation_strings":["University of Colorado Colorado Springs,College of Engineering and Applied Science,Computer Science Department,Colorado Springs,CO,United States,80918"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Colorado Colorado Springs,College of Engineering and Applied Science,Computer Science Department,Colorado Springs,CO,United States,80918","institution_ids":["https://openalex.org/I888729015"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5025389734","display_name":"Sang\u2010Yoon Chang","orcid":"https://orcid.org/0000-0002-5736-5823"},"institutions":[{"id":"https://openalex.org/I888729015","display_name":"University of Colorado Colorado Springs","ror":"https://ror.org/054spjc55","country_code":"US","type":"education","lineage":["https://openalex.org/I888729015"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Sang-Yoon Chang","raw_affiliation_strings":["University of Colorado Colorado Springs,College of Engineering and Applied Science,Computer Science Department,Colorado Springs,CO,United States,80918","Silicon Valley Cybersecurity Institute (SVCSI)"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"University of Colorado Colorado Springs,College of Engineering and Applied Science,Computer Science Department,Colorado Springs,CO,United States,80918","institution_ids":["https://openalex.org/I888729015"]},{"raw_affiliation_string":"Silicon Valley Cybersecurity Institute (SVCSI)","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5058487069","display_name":"Wenjun Fan","orcid":"https://orcid.org/0000-0002-7363-9695"},"institutions":[{"id":"https://openalex.org/I69356397","display_name":"Xi\u2019an Jiaotong-Liverpool University","ror":"https://ror.org/03zmrmn05","country_code":"CN","type":"education","lineage":["https://openalex.org/I69356397"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wenjun Fan","raw_affiliation_strings":["Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123","Silicon Valley Cybersecurity Institute (SVCSI)"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Xi&#x2019;an Jiaotong-Liverpool University,School of Advanced Technology,Suzhou,Jiangsu,P.R.China,215123","institution_ids":["https://openalex.org/I69356397"]},{"raw_affiliation_string":"Silicon Valley Cybersecurity Institute (SVCSI)","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":7,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.0665981,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"6"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.9997000098228455,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/testbed","display_name":"Testbed","score":0.7770462036132812},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7003008127212524},{"id":"https://openalex.org/keywords/container","display_name":"Container (type theory)","score":0.6644235849380493},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6466060280799866},{"id":"https://openalex.org/keywords/countermeasure","display_name":"Countermeasure","score":0.5755500197410583},{"id":"https://openalex.org/keywords/overhead","display_name":"Overhead (engineering)","score":0.5171665549278259},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.4831058979034424},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.3572065830230713},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.33335909247398376},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.13369110226631165}],"concepts":[{"id":"https://openalex.org/C31395832","wikidata":"https://www.wikidata.org/wiki/Q1318674","display_name":"Testbed","level":2,"score":0.7770462036132812},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7003008127212524},{"id":"https://openalex.org/C2781018962","wikidata":"https://www.wikidata.org/wiki/Q5164884","display_name":"Container (type theory)","level":2,"score":0.6644235849380493},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6466060280799866},{"id":"https://openalex.org/C21593369","wikidata":"https://www.wikidata.org/wiki/Q1032176","display_name":"Countermeasure","level":2,"score":0.5755500197410583},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.5171665549278259},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.4831058979034424},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.3572065830230713},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.33335909247398376},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.13369110226631165},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C146978453","wikidata":"https://www.wikidata.org/wiki/Q3798668","display_name":"Aerospace engineering","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/svcc56964.2023.10165201","is_oa":false,"landing_page_url":"http://dx.doi.org/10.1109/svcc56964.2023.10165201","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2023 Silicon Valley Cybersecurity Conference (SVCC)","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":18,"referenced_works":["https://openalex.org/W1998360019","https://openalex.org/W2034179562","https://openalex.org/W2046235404","https://openalex.org/W2513765047","https://openalex.org/W2550874390","https://openalex.org/W2586202584","https://openalex.org/W2893654721","https://openalex.org/W2899822557","https://openalex.org/W2924430850","https://openalex.org/W2936268283","https://openalex.org/W3016236525","https://openalex.org/W3020993522","https://openalex.org/W3035070656","https://openalex.org/W3100669032","https://openalex.org/W3116311261","https://openalex.org/W4200226889","https://openalex.org/W4226043146","https://openalex.org/W6636558983"],"related_works":["https://openalex.org/W2883256816","https://openalex.org/W2171408034","https://openalex.org/W3003320923","https://openalex.org/W2106140982","https://openalex.org/W2152313554","https://openalex.org/W2064303750","https://openalex.org/W3048672182","https://openalex.org/W1509300825","https://openalex.org/W3092582874","https://openalex.org/W2065450024"],"abstract_inverted_index":{"Due":[0],"to":[1,75,90,137],"the":[2,7,11,27,49,92,102,105,108,113,131,135,139,148],"ease":[3],"of":[4,10,46,107,115],"management":[5],"and":[6,77,104,118],"high":[8],"performance":[9,114],"containerization,":[12],"many":[13],"services":[14],"have":[15],"been":[16,61],"deployed":[17],"on":[18,41],"container,":[19],"e.g.,":[20],"Web":[21],"server":[22],"running":[23],"in":[24,54],"Docker.":[25],"However,":[26],"Docker":[28],"implementation":[29],"suffers":[30],"several":[31,88],"fatal":[32],"loopholes.":[33],"In":[34],"this":[35,79],"paper,":[36],"we":[37,72,86,95],"perform":[38],"a":[39,42,55,64,82],"study":[40],"persistent":[43],"security":[44,109],"problem":[45],"Docker,":[47],"i.e.,":[48],"port":[50],"mapping":[51],"statement":[52],"results":[53,123],"wrong":[56],"IPTABLES":[57],"rule,":[58],"which":[59],"has":[60],"disclosed":[62],"for":[63,100,134,146],"while":[65],"but":[66,141],"is":[67],"still":[68],"not":[69,128],"solved.":[70],"Therefore,":[71],"are":[73],"motivated":[74],"investigate":[76],"articulate":[78],"vulnerability":[80],"with":[81],"technical":[83],"explanation.":[84],"Nevertheless,":[85],"proposed":[87],"solutions":[89],"address":[91],"problem.":[93],"Further,":[94],"applied":[96],"our":[97,126],"network":[98],"testbed":[99],"demonstrating":[101],"loophole":[103],"effectiveness":[106],"solutions.":[110],"We":[111],"tested":[112],"both":[116],"attack":[117],"defense":[119],"prototyping.":[120],"The":[121],"experimental":[122],"show":[124],"that":[125],"approach":[127],"only":[129],"increase":[130],"time":[132],"cost":[133],"attacker":[136],"identify":[138],"target":[140],"also":[142],"bring":[143],"negligible":[144],"overhead":[145],"deploying":[147],"countermeasures.":[149]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
