DockerDash: How Poisoned Container Metadata Turned Docker's AI Assistant Into an Attack Vector
Two independent security firms found that Docker's Ask Gordon AI could be hijacked through image metadata, enabling remote code execution and data theft across millions of developer machines.