Here is a more thorough blog post from my collaborators at rhizome.org http://rhizome.org/editorial/2015/nov/30/oldweb-today/
Especially given that, if I'm reading this right, all users within the container have complete, password-free sudo access: https://github.com/ikreymer/netcapsule/blob/2ff2f5d74fb517ee...
I guess an attacker would also have to get the malicious code into one of the archives somehow, but that should be possible, right?
Here's one example: http://oldweb.today/nslinux/2015/http://archive.rhizome.org/...
Maybe the itch to be scratched was not so much a technical one?