Tag: cloud
-
Hackers Create Hidden Microsoft 365 Inbox Rules to Conceal Vendor Payment Fraud
Threat actors are increasingly abusing Microsoft 365 identity sessions rather than deploying malware, as shown in a cloud-only business email compromise (BEC). The attackers used an adversary-in-the-middle (AiTM) phishing kit to capture an authenticated Microsoft 365 session token, bypass multi-factor authentication, and quietly redirect vendor payments to attacker-controlled bank accounts. The lure contained a “View…
-
Critical Citrix NetScaler Flaw Allows Attackers to Bypass Authentication
Cloud Software Group has issued a critical security bulletin regarding two vulnerabilities that affect customer-managed NetScaler ADC and NetScaler Gateway appliances. Among these, there is an authentication-bypass flaw that could expose remote-access environments to unauthenticated breaches. Citrix NetScaler Flaw The most severe issue, tracked as CVE-2026-19490, has a CVSS v4 base score of 9.3 and…
-
Critical Citrix NetScaler Flaw Allows Attackers to Bypass Authentication
Cloud Software Group has issued a critical security bulletin regarding two vulnerabilities that affect customer-managed NetScaler ADC and NetScaler Gateway appliances. Among these, there is an authentication-bypass flaw that could expose remote-access environments to unauthenticated breaches. Citrix NetScaler Flaw The most severe issue, tracked as CVE-2026-19490, has a CVSS v4 base score of 9.3 and…
-
EHR Vendor Notifying 3.8 Million Patients of Data Theft Hack
CareCloud Said Compromise Involved One of Its AWS Cloud Environments. CareCloud, a provider of cloud-based, artificial intelligence-powered electronic health records, is notifying nearly 3.8 million individuals that their personal and health information was potentially stolen in a March hacking incident involving one of its Amazon Web Services environments. First seen on govinfosecurity.com Jump to article:…
-
The Hidden Risk in Data Transfer
Cybersecurity has become one of the most defining business challenges of recent times. Organisations have invested heavily in protecting their networks, securing cloud environments and strengthening identity and access management. At the same time, organisations are under increasing pressure to prove they are handling sensitive information securely, not just storing it safely but protecting it…
-
The ‘Industrial Accidents’ Behind Rogue AI Agent Attacks, and the Sandbox Failures Exposed
Rich Mogull, chief analyst with the Cloud Security Alliance, joins the Dark Reading News Desk with what defenders need to take away from AI agents escaping their environments to launch attacks. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/industrial-accidents-rogue-ai-agent-attacks-sandbox-failures
-
Sakura Internet hack exposes data of up to 1.36 million accounts
Japanese cloud and data center service provider Sakura Internet disclosed that hackers accessed its sales management system, where customer contract and membership information is stored. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/sakura-internet-hack-exposes-data-of-up-to-136-million-accounts/
-
Nicht-menschliche Identitäten: Warum Unternehmen Maschinen, Dienste und KI-Agenten besser steuern müssen
Service-Konten, API-Schlüssel, Zertifikate und KI-Agenten sind heute zentrale Bausteine digitaler Geschäftsprozesse zugleich aber oft kaum gesteuerte Risikoträger. Unternehmen müssen nicht-menschliche Identitäten deshalb konsequent inventarisieren, begrenzen und überwachen, um Angriffsflächen zu reduzieren, Compliance-Anforderungen zu erfüllen und Automatisierung sicher zu skalieren. Management Summary Nicht-menschliche Identitäten entwickeln sich in hybriden IT-, Cloud- und KI-Umgebungen zu einer… First seen…
-
What Cloud Security Actually Controls
First seen on scworld.com Jump to article: www.scworld.com/tech-explainer/what-cloud-security-actually-controls
-
Control Plane Gaps Create Invisible Cloud Risk
First seen on scworld.com Jump to article: www.scworld.com/risk-advisory/risk-advisory-control-plane-gaps-create-invisible-cloud-risk
-
Cloud Governance and Assurance: Evidencing Control Effectiveness Across Providers
First seen on scworld.com Jump to article: www.scworld.com/implementation-guides/cloud-governance-and-assurance-evidencing-control-effectiveness-across-providers
-
Hackers Expose Data of 1.2 Million Heights Finance Customers
A Heights Finance breach exposed personal and financial data of over 1.2 million people after hackers compromised a third-party cloud platform. Heights Finance is a U.S. consumer finance company that provides personal loans and related lending services, mainly to customers who may have limited access to traditional bank credit. It is part of Heights Finance…
-
Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets
Tags: ai, automation, cloud, credentials, exploit, flaw, intelligence, malicious, open-source, software, technology, vulnerabilityTwo critical vulnerabilities impacting MLflow, an open-source artificial intelligence (AI) platform, and FUXA, an open-source, web-based SCADA / HMI software built for operational technology (OT) and industrial automation, are witnessing malicious scanning and exploitation efforts.According to independent reports from watchTowr and VulnCheck, the vulnerabilities in question are as follows – First seen on thehackernews.com Jump…
-
FedRAMP 20x Modernization: Continuous Monitoring Audits
FedRAMP 20x represents a fundamental evolution in cloud authorization, replacing static annual assessments with dynamic, real-time continuous monitoring audits that demand integrated governance and automated evidence pipelines. This modernization requires organizations to embed NIST 800-53 controls into operational workflows rather than treating compliance as a periodic checkpoint. FedRAMP Continuous Monitoring Audits Under 20x Modernization In”¦…
-
Broken Access Control Is Still Winning: 2025 OWASP Data
Key Takeaways Broken access control remains the number one category in OWASP’s Top 10 2025 release, the fourth consecutive edition where it has held the top spot. Security misconfiguration jumped from fifth place to second, driven largely by cloud configuration complexity rather than code level bugs. OWASP’s own reported average incidence rate for broken access…The…
-
Cloud-Sicherheit endet nicht beim Provider
Cloud-Dienste haben den IT-Betrieb grundlegend verändert. Unternehmen müssen keine eigene Hardware mehr beschaffen. Updates, Verfügbarkeit und Skalierung liegen weitgehend beim Anbieter. Das ist bequem. Es ist aber kein Freibrief. Ein Cloud-Provider schützt seine Plattform. Er kann jedoch nicht entscheiden, welche Nachricht vertraulich ist. Er kennt nicht jeden Geschäftsprozess. Und er weiß nicht, ob ein Empfänger…
-
Critical MLflow SSRF Flaw Exploited in the Wild
A critical unauthenticated server-side request forgery (SSRF) vulnerability in MLflow, tracked as CVE-2026-64849, is being actively exploited within hours of its disclosure, according to watchTowr. This flaw affects MLflow versions before 3.15.0 and can expose cloud credentials, internal services, and other sensitive data to remote attackers. MLflow SSRF Flaw The vulnerability exists in MLflow’s model-registry…
-
Silent ‘TwinLoot’ Cyber Threat Operates Entirely From Microsoft’s Cloud
The Python-based malware framework takes living-off-the-land tactics to a new heights of stealth, with a modular implant that steals credentials and achieves persistence. First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/silent-twinloot-threat-operates-microsoft-cloud

