Tag: cloud
-
Cloud-Strategie für Handlungsfähigkeit – Kritische Infrastruktur Cloud: Warum jetzt Souveränität zählt
First seen on security-insider.de Jump to article: www.security-insider.de/cloud-plattformen-digitale-souveraenitaet-abhaengigkeiten-a-36ca8d408ff855841a040bb61284dbb3/
-
Von der Risikoerkennung zum aktiven Datenschutz: Thales stärkt DSPM für das KI-Zeitalter
Thales erweitert CipherTrust DSPM, um sensible Daten in Cloud-, On-Premises- und Hybridumgebungen vor neuen Risiken durch KI und autonome Agenten zu schützen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/von-der-risikoerkennung-zum-aktiven-datenschutz-thales-staerkt-dspm-fuer-das-ki-zeitalter/a46601/
-
Unsichtbare Zugänge, reales Risiko: So gelingt Governance für Maschinenidentitäten
Service Accounts, API-Schlüssel, Cloud-Workloads und KI-Agenten handeln längst in einer Größenordnung, die klassische IAM-Prozesse überfordert. Die Studie »2026 Identity Security Landscape« beschreibt eine Identitätswelt, in der Maschinen menschliche Nutzer zahlenmäßig weit übertreffen und fragmentierte Kontrollen die Reaktion auf Vorfälle verlangsamen. Der Praxisleitfaden zeigt, wie Unternehmen in 90 Tagen Transparenz schaffen, Verantwortlichkeiten festlegen, langlebige Secrets abbauen……
-
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 117
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Lunex Unmasked: A New Information Stealer Deployed Through BYOVD Storm-3168: Agentic-driven cloud attacks using compromised service principals Don’t Call Us, We’ll Call Your APIs – TraderTraitor Backdoors Resurface on Victim With No Crypto Ties…
-
AWS AI Agent Vulnerabilities Let Attackers Bypass Authentication and Steal Credentials
Tags: access, ai, authentication, cloud, credentials, cyber, flaw, open-source, service, vulnerabilityAWS has released security fixes for four vulnerabilities affecting its open-source Loom AI agent orchestration platform and Amazon SageMaker Unified Studio. The flaws could allow attackers to bypass authentication, steal OAuth2 tokens and temporary cloud credentials, access internal services, and execute arbitrary code in another user’s SageMaker environment. AWS disclosed the issues in security bulletins…
-
Vom Garagenprojekt zum Milliardengeschäft der Aufstieg von Open Source
Linux begann 1991 als unfertiger Kernel für wenige Rechner. Heute trägt Open Source Rechenzentren, Clouds, Behördenportale und KI-Plattformen. Der offene Code allein erklärt diesen Erfolg jedoch nicht. Entscheidend waren professionelle Betriebsmodelle, verlässlicher Support und die Erkenntnis, dass technologische Wahlfreiheit einen messbaren strategischen Wert besitzt. Für CIOs lautet die Kernfrage deshalb nicht mehr, ob Open Source……
-
Cybersecurity 2026 Von der Abwehr zur Resilienz: Die zehn Sicherheitsprioritäten für Unternehmen
Cybersecurity 2026 ist kein Wettrüsten um immer mehr Einzelwerkzeuge. Der Microsoft Digital Defense Report beschreibt eine Risikolage, in der kompromittierte Identitäten, KI-Agenten, Cloud-Plattformen und Zulieferer miteinander verknüpft sind. Für Vorstände und CIOs folgt daraus ein klarer Auftrag: Sicherheitsverantwortung in der Unternehmensführung verankern, Abhängigkeiten sichtbar machen und Wiederherstellungsfähigkeit konsequent testen. Management Summary Cyberrisiken sind Geschäftsrisiken: Identitäten,……
-
Exabeam Pushes The >>Agentic SOC<< Into The Cloud And On-Premises, With Analysts Kept In The Loop
Security operations centres are facing a two-sided problem. Attackers are increasingly automating their campaigns, while inside the business, AI agents and autonomous workflows are multiplying faster than most security teams can track. Exabeam’s answer, unveiled on October 1, is a broad set of updates designed to let AI take on more of the investigative legwork…
-
Souveräne Cloud Datenhoheit, Betrieb, Schlüssel und Rechtsraum prüfbar machen
Eine souveräne Cloud ist eine Cloud-Umgebung, in der eine Organisation selbst bestimmt, wo ihre Daten liegen, wer die Systeme betreibt, wer die Schlüssel hält und welches Recht im Konfliktfall gilt. AWS, Microsoft, Google, SAP und europäische Anbieter vermarkten inzwischen eigene Dienste als ‘Sovereign Cloud>>. Für IT-Leiter und CISOs sagt das Etikett wenig. Entscheidend ist, welche…
-
Why CISOs Struggle to Answer the Board’s Three Hardest Questions, and How to Fix the Report
The quarterly board meeting is two weeks out. The security team is pulling exports from the identity provider, the cloud posture tool, the vulnerability scanner, the SIEM and the EDR console. Someone is building a spreadsheet to reconcile them. Someone else is turning that spreadsheet into slides.Then a board member asks three questions: How secure…
-
Chinese spies impersonate White House, Anthropic figures to phish AI policy experts
A China-aligned espionage group has been posing as a former White House official and a prominent economist to get into the cloud accounts of AI policy experts in the US, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/10/02/china-aligned-ta419-phishing-ai-policy-experts/
-
12 Best IGA Tools Compared (2026): Features Pricing
SailPoint remains the best overall IGA platform for certification depth and AI-assisted reviews, with Saviynt the best converged alternative when ERP-grade SoD must ship cloud-native. Evaluating the broader landscape across the top Identity and Access Management (IAM) companies shows how access governance has evolved from static audit checklists into dynamic risk-control planes. The market’s real…
-
AI policy circles targeted in China-linked phishing operation
Cybersecurity firm Proofpoint said TA419 impersonated officials and AI industry figures in an effort to gain access to cloud accounts held by U.S. think tank, university and legal-sector experts. First seen on cyberscoop.com Jump to article: cyberscoop.com/china-cyber-espionage-ta419-phishing-us-ai-policy-experts/
-
Airlock macht IAM as a Service mit Swisscom breiter zugänglich
Ab sofort ist der Cloud-Service für Customer-Identity und Access-Management (cIAM) von Airlock Teil des Dienstleistungsspektrums von Swisscom. Kunden vertrauen damit auf fortschrittliche Schweizer IAM-Technologie <> und werden bei Einführung und Betrieb von einem etablierten Schweizer Anbieter begleitet. Davon profitieren insbesondere Organisationen, die eine cIAM-Lösung nutzen möchten, ohne dafür eigenes Know-how oder eine eigene […] First…
-
Axios Flaws Let Attackers Bypass Proxy Controls and Trigger SSRF Attacks
Axios maintainers have disclosed several high-severity security vulnerabilities that could allow attackers to bypass proxy and DNS controls in server-side applications, potentially enabling server-side request forgery (SSRF) against internal services and cloud metadata endpoints. The most critical issue, tracked as GHSA-3pq3-5fj3-cg6v, affects Axios’s HTTP/2 request path. This vulnerability arises because the HTTP/2 adapter establishes sessions…
-
Product showcase: Proton Drive endend encrypted cloud storage
Proton Drive is an end-to-end encrypted cloud storage service for storing, synchronizing, backing up, and sharing files. It also includes Proton Docs and Proton Sheets, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/10/01/product-showcase-proton-drive/
-
Attackers Target Developer Credentials to Expand Supply Chain Intrusions Beyond Source Code
Software supply chain attacks are increasingly evolving into cloud identity breaches, as attackers weaponize trusted packages to steal credentials from developer workstations and CI/CD environments before an application is ever executed. The result is a dangerous pivot: a routine dependency installation can give threat actors access to cloud accounts, source-code repositories, container platforms, secrets-management systems,…
-
Storm-3068 Hijacks Azure DevOps Pipelines to Steal Kubernetes Credentials After Account Takeover
Tags: access, cloud, credentials, cyber, identity, infrastructure, kubernetes, microsoft, software, supply-chain, theftMicrosoft has detailed a cloud-focused intrusion attributed to Storm-3068, in which attackers turned a compromised user account into a launch point for Azure DevOps abuse, Kubernetes credential theft, and potential access to connected cloud environments. The campaign demonstrates how identity compromise can quickly escalate into a software supply-chain and production-infrastructure incident when development platforms have…
-
Storm-3068 Hijacks Azure DevOps Pipelines to Steal Kubernetes Credentials After Account Takeover
Tags: access, cloud, credentials, cyber, identity, infrastructure, kubernetes, microsoft, software, supply-chain, theftMicrosoft has detailed a cloud-focused intrusion attributed to Storm-3068, in which attackers turned a compromised user account into a launch point for Azure DevOps abuse, Kubernetes credential theft, and potential access to connected cloud environments. The campaign demonstrates how identity compromise can quickly escalate into a software supply-chain and production-infrastructure incident when development platforms have…
-
OpenAI Launches Codex Security Cloud for Always-On Application Security Scanning
OpenAI has expanded its Codex platform with Codex Security Cloud, a cloud-hosted application security feature that continuously analyzes GitHub repositories, investigates potential vulnerabilities, and prepares remediation patches for human review. Announced as part of the company’s latest Codex updates, this service is designed to operate security workflows beyond a developer’s local machine. It can run…
-
Thales und Google Cloud erweitern Sicherheitskontrollen für agentische KI
Thales und Google Cloud erweitern ihre Zusammenarbeit zur Absicherung agentischer KI-Workflows mit Governance, Datenkontrolle und Laufzeitschutz. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/thales-und-google-cloud-erweitern-sicherheitskontrollen-fuer-agentische-ki/a46564/
-
Wie wählen Unternehmen den optimalen Gigabit-Anschluss?
Die Anforderungen an die digitale Anbindung von Betrieben, die heute mit einer Vielzahl datenintensiver Anwendungen und vernetzter Prozesse konfrontiert sind, steigen kontinuierlich an, sodass Unternehmen zunehmend gezwungen sind, ihre bestehende Infrastruktur regelmäßig zu überprüfen und an die veränderten technischen Gegebenheiten anzupassen. Cloud-Anwendungen, hochauflösende Videokonferenzen, große Datentransfers und vernetzte Standorte setzen leistungsstarke Verbindungen voraus. Ein Gigabit-Anschluss…
-
KnowBe4 führt eine Integration mit Workday-Learning ein
KnowBe4 führt ‘KnowBe4 for Workday Learning” ein. Die Integration ist Teil der ‘Workday Cloud Connect for Learning”-Strategie. Die Integration ermöglicht es Unternehmen, KnowBe4-Security Awareness-Schulungen und Compliance nahtlos über Workday-Learning anzubieten und dabei die Daten automatisch zu synchronisieren, um den Verwaltungsaufwand zu reduzieren. KnowBe4 for Workday-Learning verbindet die Schulungsbibliothek von KnowBe4 direkt mit Workday-Learning, powered by…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…

