Tag: cloud
-
Objektspeicher sicher schützen: Warum Replikation kein Backup ersetzt
Mit dem rasanten Wachstum von KI-, Analytics- und Cloud-Workloads wird ein unabhängiges, unveränderliches Backup zum entscheidenden Gamechanger für Cyberresilienz und Business Continuity. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/objektspeicher-sicher-schuetzen-warum-replikation-kein-backup-ersetzt/a45294/
-
Digitale Souveränität – Controlware und Sekoia.io mit cloud-nativem SOC
First seen on security-insider.de Jump to article: www.security-insider.de/controlware-und-sekoiaio-mit-cloud-nativem-soc-a-1fcfaa5cff46dfaaf5b37702765ab62f/
-
APT Group Patches termsrv.dll to Enable Multiple RDP Sessions
A sustained cyber espionage campaign attributed to the Cloud Atlas advanced persistent threat (APT) group has introduced a stealthy technique that modifies the Windows termsrv.dll library to enable multiple Remote Desktop Protocol (RDP) sessions on compromised systems. Observed throughout 2025 and continuing into 2026, the activity primarily targets government and commercial entities in Russia and…
-
Zentrale Analyse und Betriebs-Monitoring für hybride Serverlandschaften – Lokale Windows-Server aus der Cloud überwachen mit Azure Arc
First seen on security-insider.de Jump to article: www.security-insider.de/lokale-windows-server-aus-der-cloud-ueberwachen-mit-azure-arc-a-3652952f07d88f470e3f3620ffe1ffb4/
-
Zentrale Analyse und Betriebs-Monitoring für hybride Serverlandschaften – Lokale Windows-Server aus der Cloud überwachen mit Azure Arc
First seen on security-insider.de Jump to article: www.security-insider.de/lokale-windows-server-aus-der-cloud-ueberwachen-mit-azure-arc-a-3652952f07d88f470e3f3620ffe1ffb4/
-
Hackers Exploit Azure RBAC to Steal Key Vault Secrets
Hackers are increasingly exploiting cloud identity and access management systems, and a methodical, sophisticated, and multi-layered attack, where a threat actor we track as Storm-2949 launched a relentless campaign with a singular focus: to exfiltrate as much sensitive data from a target organization’s high-value assets as possible. The attack, attributed to a threat actor tracked…
-
Digitale Souveränität: Europa erneuert seine Cloud-Infrastruktur für 180 Millionen Euro
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/digitale-souveraenitaet-europa-erneuerung-cloud-infrastruktur
-
Digitale Souveränität: Europa erneuert seine Cloud-Infrastruktur für 180 Millionen Euro
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/digitale-souveraenitaet-europa-erneuerung-cloud-infrastruktur
-
Cloud Resilience Isn’t Just Uptime: Why MSPs Must Design For Disruption
First seen on scworld.com Jump to article: www.scworld.com/perspective/cloud-resilience-isnt-just-uptime-why-msps-must-design-for-disruption
-
Zscaler Targets AI Identity Risk With Symmetry Acquisition
Startup Symmetry Systems Maps Relationships Across AI, SaaS and Cloud Assets. Zscaler plans to acquire San Francisco-based Symmetry Systems to unify visibility across AI models, identities, applications and datasets, helping enterprises track AI lineage, govern agentic identities and enforce granular zero trust controls across cloud and SaaS environments. First seen on govinfosecurity.com Jump to article:…
-
IBM Targets AI Inference Costs and VM Modernization With New Red Hat Cloud Services
First seen on scworld.com Jump to article: www.scworld.com/news/ibm-targets-ai-inference-costs-and-vm-modernization-with-new-red-hat-cloud-services
-
Cloud Security Alert Overload? Upwind Launches AI Agents for Runtime Security
First seen on scworld.com Jump to article: www.scworld.com/news/cloud-security-alert-overload-upwind-launches-ai-agents-for-runtime-security
-
Fast and Furious Nimbus Manticore Operations During the Iranian Conflict
ey Findings Introduction During the recent geopolitical tensions in the Middle East, wereportedon multiple Iran-nexus threat actors advancing Iran’s strategic objectives through cyber operations. These activities includedtargeting internet-connected cameras, conductingdestructive attacksagainst US and Israeli entities, andexfiltrating datafrom cloud environments to support broader kinetic and intelligence-gathering efforts. Nimbus Manticore (also tracked asUNC1549) is an IRGC-affiliated threat…
-
5,561 GitHub Repositories Hit by Megalodon Supply Chain Attack in Six Hours
SafeDep uncovered the Megalodon attack targeting 5,561 GitHub repositories with malicious CI workflows and cloud credential theft. First seen on hackread.com Jump to article: hackread.com/github-repositories-megalodon-supply-chain-attack/
-
Dynamit-Phishing: Neue OAuth-Angriffe kapern Unternehmenszugänge in Sekunden
Mit der zunehmenden Verbreitung von Phishing-as-a-Service und zentralisierten Cloud-Identitäten dürfte die Bedrohung weiter wachsen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/dynamit-phishing-neue-oauth-angriffe-kapern-unternehmenszugaenge-in-sekunden/a45269/
-
Splunk Patches Multiple Vulnerabilities Enabling DoS Attacks and Data Exposure
Splunk has released security updates to fix three newly disclosed vulnerabilities that could allow low-privileged users to access sensitive data or disrupt Splunk Enterprise deployments through denial-of-service (DoS) conditions. The patches address issues in both Splunk Enterprise and the Splunk Cloud Platform, as well as the Splunk AI Toolkit app. The flaws include improper access…
-
Operation Dragon Whistle Targets Changzhou University with Malicious LNK Files
A recent phishing campaign dubbed “Operation Dragon Whistle” highlights an evolving trend in cyberattacks: threat actors abusing legitimate developer tools and cloud services to maintain stealth and persistence. Although initially linked to targeting academic environments such as Changzhou University, new analysis reveals overlapping tactics used in a broader campaign aimed at government-linked organizations, including Pakistan’s…
-
Einfaches Identitäts- und Zugangs-Management – Ein Credential für Tür, Rechner und Cloud
First seen on security-insider.de Jump to article: www.security-insider.de/ein-credential-fuer-tuer-rechner-und-cloud-a-b21b2f732fd8df36b6467dcf67b58f72/
-
Google API Keys Remain Active After Deletion
A security researcher discovered the API keys can still be used for 23 minutes after deletion, even though the cloud provider claims deletion is immediate. First seen on darkreading.com Jump to article: www.darkreading.com/identity-access-management-security/google-api-keys-active-after-deletion
-
ThreatsDay Bulletin: Linux Rootkits, Router 0-Day, AI Intrusions, Scam Kits and 25 New Stories
This week starts small.A token leaks. A bad package slips in. A login trick works. An old tool shows up again. At first, it feels like the usual mess. Then you see the pattern: attackers are not always breaking in. They are using the parts we already trust.That is what makes it worrying. The danger…
-
IAM as a Service Warum Identity-Management zur Cloud-Plattform wird
Identity and Access-Management galt lange als klassisches Infrastrukturprojekt: komplex, teuer und eng an interne Verzeichnisdienste gekoppelt. Doch mit Cloud-Transformation, hybriden Arbeitsmodellen und KI-gestützten Anwendungen gerät das traditionelle IAM-Modell zunehmend an seine Grenzen. Genau hier setzt der Ansatz ‘IAM as a Service” (IAMaaS) an, den Airlock in seinem aktuellen Whitepaper als Zukunftsmodell für modernes Customer Identity…
-
IAM as a Service Warum Identity-Management zur Cloud-Plattform wird
Identity and Access-Management galt lange als klassisches Infrastrukturprojekt: komplex, teuer und eng an interne Verzeichnisdienste gekoppelt. Doch mit Cloud-Transformation, hybriden Arbeitsmodellen und KI-gestützten Anwendungen gerät das traditionelle IAM-Modell zunehmend an seine Grenzen. Genau hier setzt der Ansatz ‘IAM as a Service” (IAMaaS) an, den Airlock in seinem aktuellen Whitepaper als Zukunftsmodell für modernes Customer Identity…
-
When Identity is the Attack Path
Consider a cached access key on a single Windows machine. It got there the way most cached credentials do – a user logged in, and the key stored itself automatically. Standard AWS behavior. No one misconfigured anything or violated a policy. Yet that single key, which was easily accessible to a minor-league attacker, could have…
-
P2PInfect Botnet Targets Kubernetes via Exposed Redis
A persistent P2Pinfect botnet campaign targeting Google Kubernetes Engine (GKE) clusters through exposed Redis instances, highlighting how a single cloud misconfiguration can enable long-term compromise. In several investigated environments, attackers maintained access for up to six months, with consistent botnet activity detected through FortiCNAPP composite alerts. The intrusion chain began with publicly exposed Redis services,…
-
P2PInfect Botnet Targets Kubernetes via Exposed Redis
A persistent P2Pinfect botnet campaign targeting Google Kubernetes Engine (GKE) clusters through exposed Redis instances, highlighting how a single cloud misconfiguration can enable long-term compromise. In several investigated environments, attackers maintained access for up to six months, with consistent botnet activity detected through FortiCNAPP composite alerts. The intrusion chain began with publicly exposed Redis services,…
-
Kritische Sicherheitslücken – Hacker schmuggeln bösartigen Code in S/4HANA und Commerce Cloud
First seen on security-insider.de Jump to article: www.security-insider.de/kritische-sap-luecken-s4hana-enterprise-search-commerce-cloud-a-20786255ab6f2eaef179986862cf9f13/
-
Third-Party Risk Management Needs to Evolve
Annual vendor risk assessments are no longer enough as AI, cloud services, and fourth-party ecosystems rapidly expand risk exposure. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/third-party-risk-management-needs-to-evolve/
-
Bulgaria fires up Google Cloud for national cyber security
The Bulgarian national systems integrator, BIS, has deployed Google Cloud’s Cybershield government security service as part of a national federated SOC deployment. First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366643458/Bulgaria-fires-up-Google-Cloud-for-national-cyber-security
-
Digitale Souveränität: Thales und Google Cloud kündigen von USA unabhängige Cloud an
Thales und Google Cloud wollen mit einer neuen Plattform deutsche Daten vor Zugriffen aus den USA schützen. First seen on golem.de Jump to article: www.golem.de/news/digitale-souveraenitaet-thales-und-google-cloud-kuendigen-von-usa-unabhaengige-cloud-an-2605-208888.html

