Carbonato Botnet Exploits Docker Hosts to Deploy AI-Controlled Malware The Carbonato botnet is exploiting Docker daemons left exposed without authentication to install malware and create remote access, then propagating worm-like across networks with AI-controlled malware. The botnet targets Docker hosts specifically, using the unauthenticated daemons as its initial infection vector. Meet Carbonato, a sneaky botnet that's exploiting Docker hosts to spread AI-controlled malware, and learn how it uses a clever worm-like approach to propagate across networks. It starts by targeting Docker daemons left exposed without authentication, allowing it to install malware and create remote access.