Hello, you are using an old browser that's unsafe and no longer supported. Please consider updating your browser to a newer version, or downloading a modern browser.

Global Accelerated Learning • Est. 1999
Glossary Term Container Breakout (Container Escape)

Training Camp • Cybersecurity Glossary

What is Container Breakout (Container Escape)?

Container breakout (escape) is an attack where a process inside a container bypasses isolation to reach the host OS or other containers.

Glossary > Cloud Security > Container Breakout (Container Escape)

Understanding Container Breakout (Container Escape)

A container breakout, or container escape, is an attack in which a process running inside a container gains access to the underlying host operating system or other containers, defeating the isolation containers are meant to provide. Attackers exploit misconfigurations (such as privileged containers or mounted host paths), kernel vulnerabilities, or insecure runtime settings to escalate from the container to the host. Once on the host, an attacker can access secrets, pivot to other workloads, or compromise the entire node. It corresponds to MITRE ATT&CK technique T1611, Escape to Host.

Learn More About Container Breakout (Container Escape):

Ready to Get Certified?

Container Breakout (Container Escape) is one of the topics you'll master in the Official ISC2 CCSP Boot Camp.

Official ISC2 CCSP Boot Camp →