In order to address the increasingly serious cloud-native container security threats arising from large-scale cloud migration of systems,the ISM method merging IPFS,DEMATEL,and method were proposed to identify the key tactical factors influencing cloud-native container security threats and their hierarchical logical relationships from the security intruder perspective.The findings of this research are as follows:the centrality and causality of the persistence and privilege escalation tactical phases are high,positioning them at the core of the entire cloud-native security threat landscape.Security attacks during these two phases require high-priority attention.Threat attacks during the execution and persistence tactical phases constitute essential factors in cloud-native container security.The threats during the initial access,credential theft,and lateral movement tactical phases have the most direct impact on cloud-native container security.In comparison with traditional and triangular fuzzy sets improved DEMATEL-ISM,our proposed method has better performance in identifying container security-related critical factors.