Herdr Studio launches as a lightweight interface that connects to a developer's existing runtime, letting agents continue running in genuine terminal sessions managed by Herdr. The company says the tool can be set up and running in three steps, positioning it as an add-on rather than a replacement for current infrastructure.
A security researcher highlights how Docker's default client-server architecture runs its daemon as root, meaning any user with access to the Docker socket can escalate privileges to full root access without a password. The piece demonstrates this with a simple command that mounts the host filesystem inside a container and bypasses normal permission checks, tying the issue to a recent vulnerability disclosed in an unnamed Linux distribution whose installer enabled an insecure Docker configuration by default.