CA-SYSDIG,-INC.
Sysdig, Inc., the secure DevOps leader, today announced findings from its Sysdig 2021 Container Security and Usage Report. While usage reveals organizations are shifting left by scanning images during the build phase, DevOps teams are still leaving their environments open to attack. The report also looks at trends, finding a 310 percent growth in container density since 2017.
The fourth annual report reveals how global Sysdig customers of all sizes and across industries are using and securing container environments. This real-world, real-time data provides insight into usage of the nearly one billion containers Sysdig customers run yearly, including security risks, container utilization, and services used. Read the Sysdig 2021 Container Security and Usage blog .
Among its findings, the report states that while 74 percent of customers are scanning before deployment, still more than half (58 percent) of containers are running as root. There are some containers that should run as root—security and system daemons for example—but this is a small portion of total containers. These risky configurations leave easy access to potentially compromise the system and access sensitive data. This finding stresses the need for security throughout the lifecycle of a container image—fixing vulnerabilities is not enough.
Highlights From the Report
Container density grows 170% since 2018
Over the past three years, the median number of containers-per-host more than doubled from 15 in 2018 to 41 today, indicating a growth in efficiency and a shift in cost savings as containers mature. This reveals a continued focus on optimization.
Prometheus continues to grow, 35% YoY
Open source adoption is broader than just Kubernetes as organizations are shifting toward Prometheus as the standard approach to monitoring container environments. The use of Prometheus metrics among Sysdig customers grew 35 percent year-over-year.
Docker down, containerd and CRI-O up 4X
In 2017, Docker represented 99 percent of containers in use at that time. Today, that number has fallen to 50 percent, down from 79 percent in October 2019. While Docker revolutionized containers, organizations are rapidly switching to newer runtimes like containerd and CRI-O.
21% of containers live less than 10 seconds
The ephemeral nature of containers is a unique efficiency advantage, yet it can be a challenge in managing issues around security, health, and performance. The short life of containers reaffirms the need for container-specific tools for security and monitoring. For example, organizations need metric collection with intervals of less than 10 seconds and a detailed record of what occurred when the container was alive.
“With the high-profile breaches we are seeing and the accelerated adoption of containers in production, the container security risk is now on the radar of CISOs. Across millions of containers that we have studied, it’s clear that organizations are shifting security left, but they are neglecting critical best practices,” said Suresh Vasudevan, chief executive officer of Sysdig. “Container security has to span the entire software development lifecycle. Until organizations fix risky configurations, protect their runtime environments, and invest in container forensics, we will see an increase in container security breaches. I expect we will see several high-impact breaches before we release our next report.”
Other Interesting Findings
- Falco, the open source runtime project for cloud-native environments created by Sysdig and donated to the CNCF, has seen a 300 percent increase in Docker Hub downloads over the last year.
- The use of golang increased to 66 percent, a 470 percent jump since last year.
- 63 percent of container images are replaced within two weeks or less, signifying a more frequent code deployment rate.
Learn More About this Report
- Download the full Sysdig 2021 Container Security and Usage Report .
- Download the infographic .
- Read the usage report blog .
- Join the webinar Real-World Insights: Dig into Sysdig’s Container Security and Usage Report on Jan. 21 at 10am PST to walk through the report with the author.
About Sysdig
Sysdig is driving the secure DevOps movement, empowering organizations to confidently secure containers, Kubernetes, and cloud services. With the Sysdig Secure DevOps Platform, cloud teams secure the build pipeline, detect and respond to runtime threats, continuously validate compliance, and monitor and troubleshoot cloud infrastructure and services. Sysdig is a SaaS platform, built on an open source stack that includes Falco and sysdig OSS, the open standards for runtime threat detection and response. Hundreds of companies rely on Sysdig for container and Kubernetes security and visibility. Learn more at www.sysdig.com .
View source version on businesswire.com: https://www.businesswire.com/news/home/20210113005319/en/
Link:
About Business Wire
Subscribe to releases from Business Wire
Subscribe to all the latest releases from Business Wire by registering your e-mail address below. You can unsubscribe at any time.
Latest releases from Business Wire
Venture Global and Tokyo Gas Announce 20-Year LNG Sales and Purchase Agreement26.11.2025 01:00:00 CET | Press release
Venture Global’s fourth long-term contract with a Japanese company7.75 MTPA of long-term contracts signed by Venture Global to date in 2025 Today, Venture Global, Inc. (NYSE: VG) and Tokyo Gas Co., Ltd announced the execution of a new, long-term liquefied natural gas (LNG) Sales and Purchase Agreement (SPA). Under the SPA, Tokyo Gas will procure 1 million tonnes per annum (MTPA) of LNG from Venture Global for 20 years, starting in 2030. This deal marks 7.75MTPA of SPAs signed by Venture Global in the last six months. “With nearly 8 MTPA of new long-term commitments signed this year, Venture Global is pleased to build on our commercial momentum through this new partnership with Tokyo Gas,” said Venture Global CEO Mike Sabel. “Tokyo Gas is a pioneer in the LNG industry and leading provider of natural gas to Japan, and we look forward to working with them as we grow our position as a top LNG supplier to Japan. This agreement will contribute significantly to the US-Japan balance of trade o
Airship Study: No-Code Native App Experiences Double Purchase Frequency (+140%), Offering Path to Profitable Holiday Growth26.11.2025 00:08:00 CET | Press release
New research quantifies the massive conversion lift from optimizing native app and web experiences, providing a critical no-code path for retailers to drive profitability Mobile-first customer experience company Airship today released new aggregate data analysis findings showing that no-code native app experiences significantly increase conversion for key lifecycle events and more than double purchase frequency. The Airship "Experience Impact” research, which studied over 1,000 in-app retail experiences and 1.7 billion device sessions, quantifies the impact of optimizing end-to-end customer journeys—not just sending messages—using no-code and AI-powered tools to drive loyalty and retention at scale, leading to sustainable profitability in a volatile economic environment. Key Findings Customers exposed to high-impact no-code native app experiences such as optimized onboarding flows, dynamic surveys, or embedded personalized offers, purchase 140% more frequently than app customers who do
Court Finds That Two Advanced Cell Diagnostics Patents Are Not Infringed by Molecular Instruments’ Proprietary HCR™ RNA-ISH Technology25.11.2025 17:30:00 CET | Press release
Molecular Instruments, Inc. announced today that the Unified Patent Court (UPC) of the European Union has found that Molecular Instruments’ HCR™ RNA-ISH technology does not infringe two patents owned by Advanced Cell Diagnostics, Inc. (a Bio-Techne group company). In a 2024 lawsuit filed in the UPC (proceedings no. UPC CFI 187/2024), Advanced Cell Diagnostics alleged that Molecular Instruments’ HCR™ RNA-ISH technology infringes European patents (EP) 2,500,439 and 1,910,572. The Court in its judgment of 18 November 2025 has rejected that claim and dismissed all of Advanced Cell Diagnostics' lawsuit, ruling that the patents are not infringed either literally or by equivalence (UPC Judgment). This 2025 UPC judgment follows on the heels of an April 2024 UK judgment in which the High Court of England and Wales had already dismissed an earlier infringement lawsuit by revoking the UK parts of the same two Advanced Cell Diagnostics patents (proceedings no. HP-2022-000026), ruling that they wer
Pure Lithium Receives Saudi Patent for Vertically Integrated Lithium Metal Battery Technology25.11.2025 14:20:00 CET | Press release
Pure Lithium Corporation, a disruptive lithium metal battery technology company, is pleased to announce that the Kingdom of Saudi Arabia has granted the company a foundational patent titled “Vertically Integrated Pure Lithium Metal Production and Lithium Battery Production.” This broad patent covers technology that combines lithium extraction, anode production and battery manufacturing. Pure Lithium’s Brine to Battery™ is a registered trademark in the Kingdom of Saudi Arabia, planting a strong base of intellectual property in the region. “The technology is particularly relevant to Saudi Arabia because it is one of the places in the world with lithium-containing brines, and even has an abundance of vanadium, which is used in our second-generation battery,” said Founder, Chairman and CEO Emilie Bodoin. “In order to displace today’s lithium-ion battery, our vision is to create global battery hubs with closed loop supply chains, not just in the U.S., but in the many places in the world whe
‘BLUE LOCK - TOKYO EGOIST -’ kicks off on Saturday, November 2225.11.2025 14:07:00 CET | Press release
“BLUE LOCK” voice actors Kazuki Ura and Hiroshi Kamiya were also blown away by the spectacle! A countdown to the new release was held together with over 2,000 fans gathered at the Tokyo Metropolitan Government Plaza. In its efforts to promote nighttime tourism, the Tokyo Metropolitan Government is developing new attractions that illuminate the capital after dark. As part of this initiative, projection mapping is being presented year-round on the iconic Tokyo Metropolitan Government Building No. 1, transforming its façade into a canvas of light and sound. This press release features multimedia. View the full release here: https://www.businesswire.com/news/home/20251121922505/en/ ©Muneyuki Kaneshiro, Yusuke Nomura, KODANSHA/BLUE LOCK Production Committee. A brand-new production inspired by the internationally popular soccer anime“BLUE LOCK”, titled BLUE LOCK – TOKYO EGOIST –, began screening on Saturday, November 22. On the first day of the screening, a mini-event was held at the Tokyo M
In our pressroom you can read all our latest releases, find our press contacts, images, documents and other relevant information about us.
Visit our pressroom
