Amazon Web Services (AWS)
Extortion Group Exploits Cloud Misconfigurations, Targets 110,000 Domains
An unknown threat group leveraged publicly exposed environment variables in organizations' AWS accounts to exfiltrate sensitive data and demand ransoms in a wide-ranging extortion campaign that targeted 110,000 domains ...
Security Boulevard
AWS’ Mithra Neural Network Detects, Ranks Malicious Domains
AWS details Mithra, its massive neural network graph model that runs on its internal systems and is used to identify and rank malicious domains that threaten the cloud giants systems that hold ...
Security Boulevard
Sisense Hacked: CISA Warns Customers at Risk
Richi Jennings | | Amazon Web Services (AWS), aws, AWS access keys, AWS bucket, cisa, CISA Advisories, CISA Advisory, CISA Alert, CISA warning, CISA.gov, depth, NSA/CISA, Sangram Dash, SB Blogwatch, Sisense
A hard-coded credential catastrophe: The analytics firm kept big companies’ secrets in an insecure AWS bucket. Government says victims include the “critical infrastructure sector.” ...
Security Boulevard
Anitian Achieves AWS DevOps Competency Status
Anitian | | 2021 Press Releases, 2021 Resources, Amazon Web Services (AWS), aws, DEVOPS, DevSecOps, FEATURED, Partners, Press Release, Press Releases
Anitian achieves Amazon Web Services (AWS) DevOps Competency, validating its technical proficiency and proven customer success specializing in DevSecOps. The post Anitian Achieves AWS DevOps Competency Status appeared first on Anitian ...
Campaign Uses Public Cloud to Spread RAT Payloads
Teri Robinson | | Amazon Web Services (AWS), azure, Cloud Security, Discovering RATs, google cloud, IT remote access, Phishing Attacks, public cloud infrastructure
Everything is migrating to the cloud, including threat actors. Now it seems a trio of remote access Trojans (RATs)—Nanocore, Netwire and AsyncRAT—are being spread in a campaign that taps public cloud infrastructure ...
Security Boulevard
Reducing the Risk of Credential Leakage
Long-term cloud credentials are often scattered throughout source code, on laptops or desktops, on servers, in cloud resources and in other locations. It’s easy to copy them across machines, creating credential sprawl ...
Security Boulevard
Understanding and Preventing S3 Leaks
Amazon Simple Storage Service, or S3, is a popular service that many developers today rely on to quickly build applications. Over time, S3 has become a popular target for attackers, resulting in ...
Security Boulevard
ThreatStack Brings Security Observability to AWS EC2
ThreatStack announced this week that it has integrated its observability platform for tracking cybersecurity events with the EC2 cloud service from Amazon Web Services (AWS). Chris Ford, vice president of product for ...
Security Boulevard
Trend Micro Employs Serverless Computing to Scan Cloud Files for Malware
Michael Vizard | | Amazon Web Services (AWS), Cloud Data Storage, Cloud Security, serverless, Trend Micro
Trend Micro has developed an antimalware tool, based on a lightweight, serverless computing framework, that can scan files for malware before they are stored in cloud services. Cloud storage services have become ...
Security Boulevard