NIST Flags Multi-Cloud Security Pitfalls
New NIST report outlines 23 unique challenges in multi-cloud environments, urging community-driven solutions.
25 results for “cloud security”
New NIST report outlines 23 unique challenges in multi-cloud environments, urging community-driven solutions.
Wazuh adds AI-powered analyst tools and integrations to ease security operations workload.
A threat actor is selling millions of records allegedly stolen from Azure tenants of major companies.
A sophisticated phishing campaign uses adversary-in-the-middle tactics to compromise Microsoft 365 accounts for financial espionage.
The shift toward browser-based workflows and AI tools is revealing significant vulnerabilities in traditional network security.
The Tel Aviv-based security firm reaches a $140 million total funding milestone to scale its application and cloud workload protections.
A new report identifies a strategic shift among threat actors, moving away from simple malware toward identity and trust-based exploits.
Okta plans to acquire Permiso Security to bolster its identity threat detection capabilities within multi-cloud environments.
A routine network update error disrupted Microsoft 365 and Azure services, prompting a full review of automated maintenance systems.
A newly identified critical vulnerability in Azure App Service permits unauthorized network-based privilege escalation.
A newly identified Go-based botnet is pivoting from simple compute-hijacking to harvesting cloud credentials from exposed AI services.
Modern security programs are failing to see deep inside SaaS platforms, leaving sensitive data exposed through quiet misconfigurations.
A configuration oversight in SharkNinja's AWS integration allows unauthorized remote commands on connected robot vacuums.
Modern internet protocols and the rise of AI workflows are challenging the effectiveness of traditional network-centric security.
A look at the professional discourse surrounding cloud and data security strategies slated for discussion this July.
Threat actors are weaponizing OAuth client ID spoofing to validate stolen credentials while remaining invisible to standard telemetry.
Microsoft details how threat actors bypassed traditional defenses to compromise Salesforce environments via OAuth and guest access.
Researchers have identified a new vector where cloud-hosted AI infrastructure is being hijacked for illicit cryptocurrency operations.
A contractor's exposed repository forced a rapid internal incident response at CISA to secure sensitive cloud credentials.
Varonis Threat Labs launches an interactive capture-the-flag experience to teach security teams how to combat modern identity attacks.
A stealthy new attack technique is bypassing traditional security logs, allowing threat actors to compromise cloud-based infrastructure.
Cybersecurity leaders are mistaking visual dashboards for true operational survivability in an increasingly chaotic, AI-driven era.
A single edit permission in Google Cloud's Dialogflow CX could have allowed attackers to hijack agents and steal sensitive data.
A CISA postmortem reveals how a contractor's public repository leak serves as a critical guide for improving organizational security.
Threat actors are leveraging AI to refine and accelerate traditional attack chains, lowering the barrier to entry for complex operations.