Tag

Cloud Security

All articles tagged with #cloud security

Identity as the Perimeter: The Hidden Gate in Cyber Breaches
technology10 days ago

Identity as the Perimeter: The Hidden Gate in Cyber Breaches

A sponsored Visual Capitalist infographic (in partnership with Unit 42 by Palo Alto Networks) outlines how cyberattackers breach systems by exploiting identity. Identity-based techniques drive about 65% of initial access, with social engineering and credential misuse leading the way, and 90% of recent investigations showing identity weaknesses as material. Once inside, over-privileged identities and token abuse enable rapid lateral movement, making identity the practical perimeter. Defenses recommended include phishing-resistant MFA (passkeys/FIDO2), rotating machine credentials, shorter sessions, just-in-time elevation for admins, and cross-cloud identity telemetry to detect unusual access chains.

Researchers uncover 27 attack scenarios targeting cloud password managers
security11 days ago

Researchers uncover 27 attack scenarios targeting cloud password managers

Swiss researchers disclosed 27 attack scenarios across Bitwarden, LastPass, Dashlane and 1Password that could let attackers view or modify vaults, challenging the science of end-to-end encryption and exploiting issues in onboarding, key escrow, and item-level encryption. A notable attack demonstrated is ‘malicious auto-enrolment’ against Bitwarden, which could allow a server-controlled attacker to hijack a vault during organization onboarding. Vendors are patching (Bitwarden, LastPass, Dashlane) while 1Password defends its SRP-based design. The paper recommends stronger authentication, key separation and ciphertext integrity. Users should check remediation status with providers and ask for audits.)

Researchers expose 25 recovery attacks against leading cloud password managers
security12 days ago

Researchers expose 25 recovery attacks against leading cloud password managers

A joint ETH Zurich/USI study identifies 25 distinct password-recovery/related attacks across major cloud password managers (Bitwarden, Dashlane, LastPass; with 1Password also noted for some flaws). Attacks span four categories: exploiting key escrow in account recovery, weaknesses in item-level encryption and metadata, vulnerabilities in sharing features, and downgrades due to legacy code. In total, 12 attacks hit Bitwarden, 7 LastPass, and 6 Dashlane; 1Password was linked to item-level and sharing flaws as known limitations. Vendors have issued patches or mitigations (e.g., Dashlane removing legacy crypto, Bitwarden remediation, LastPass hardening, 1Password using SRP), and there’s no evidence these issues have been exploited in the wild.

VoidLink: A Cloud-Native Linux Malware Framework Targets Cloud and Containers
security1 month ago

VoidLink: A Cloud-Native Linux Malware Framework Targets Cloud and Containers

Check Point Research details VoidLink, a modular, cloud-first Linux malware framework designed for long-term access in cloud and container environments. Written in Zig, it features a two-stage loader, an in-memory plugin system with 37 default plugins, a web-based C2 dashboard, and adaptive stealth that tailors behavior after detecting cloud providers (AWS, GCP, Azure, Alibaba, Tencent). It supports multiple command-and-control channels (HTTP/HTTPS, DNS, ICMP) and even a potential mesh network, plus rootkit capabilities (LD_PRELOAD, eBPF, LKM) depending on kernel version, anti-analysis and self-deletion measures, and a broad plugin ecosystem for post-exploitation tasks. The framework appears to be under active development—likely commercial—raising the need for defenders to harden Linux, cloud, and container environments; as of publication, no real-world infections had been observed.

Palo Alto Networks and Google Cloud Secure $10 Billion AI and Cloud Deal
technology2 months ago

Palo Alto Networks and Google Cloud Secure $10 Billion AI and Cloud Deal

Palo Alto Networks and Google Cloud have expanded their partnership to enhance AI security across cloud and hybrid environments, integrating Palo Alto's Prisma AIRS with Google Cloud's AI services to protect AI workloads, improve security management, and streamline deployment, while also migrating Palo Alto's internal workloads to Google Cloud to optimize performance and reliability.

Researchers Reveal GPT-5 Jailbreak and Zero-Click AI Attacks Threatening Cloud and IoT Security
technology6 months ago

Researchers Reveal GPT-5 Jailbreak and Zero-Click AI Attacks Threatening Cloud and IoT Security

Cybersecurity researchers have discovered sophisticated jailbreak techniques and zero-click AI agent attacks targeting GPT-5 and cloud/IoT systems, exposing vulnerabilities in AI safety measures and highlighting the increasing risks of indirect prompt injections and external system integrations. These attacks can manipulate AI models to generate harmful content or exfiltrate sensitive data without user interaction, emphasizing the need for improved security protocols in AI development.

Upwind Secures $100M Funding, Nears $900M Valuation
business1 year ago

Upwind Secures $100M Funding, Nears $900M Valuation

Israeli cybersecurity startup Upwind is set to raise $100 million in a Series B funding round, valuing the company at $850-900 million. Founded by Amiram Shachar and partners from Spot.io, Upwind focuses on real-time cloud infrastructure protection. The funding round includes investors like Craft Ventures, Greylock, and basketball star Steph Curry's Penny Jar. This round will bring Upwind's total funding to $180 million within two years, as the company plans to expand its workforce and enhance its cloud security platform.

Google's Record-Breaking Wiz Acquisition Signals Major Tech M&A Wave
businesstechnology1 year ago

Google's Record-Breaking Wiz Acquisition Signals Major Tech M&A Wave

Google parent Alphabet Inc. is reportedly nearing a $23-billion acquisition of cloud security startup Wiz Inc., a move seen as a strategic "poker move" that could trigger a significant wave of mergers and acquisitions in Big Tech by 2025. Analysts highlight the deal's potential to reshape the industry, enhance Google's cloud security capabilities, and set new valuation benchmarks for other cybersecurity firms.

"Moroccan Cyber Gang Exploits Gift Cards, Steals $100K Daily"
cybersecurity1 year ago

"Moroccan Cyber Gang Exploits Gift Cards, Steals $100K Daily"

A Moroccan cybercrime group, Storm-0539, is stealing up to $100,000 daily through sophisticated email and SMS phishing attacks targeting gift card portals of large retailers and luxury brands. The group, active since late 2021, uses advanced tactics to gain access to corporate systems, create fraudulent gift cards, and sell them online. Microsoft and the FBI have issued warnings and advisories to combat these threats, urging companies to enhance their security measures.