diff --git a/hack/install.sh b/hack/install.sh index 97d2513e1c..b3a4c58365 100644 --- a/hack/install.sh +++ b/hack/install.sh @@ -78,6 +78,12 @@ echo_docker_as_nonroot() { Remember that you will have to log out and back in for this to take effect! + WARNING: Adding a user to the "docker" group will grant the ability to run + containers which can be used to obtain root privileges on the + docker host. + Refer to https://docs.docker.com/engine/security/security/#docker-daemon-attack-surface + for more information. + EOF }