Tag: cloud
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Hackers Use Compromised Service Principals to Delete Azure Storage and Steal Cloud Credentials
Microsoft has uncovered an Azure-focused destructive campaign linked to JADEPUFFER, a threat actor the company tracks as Storm-3168. The group abused compromised service principals to map cloud resources, delete Azure Storage accounts and application components, attack recovery controls, and collect storage account access keys that could support later data theft. The activity expands on research…
-
Plötzlich offline: Wie Unternehmen trotz Ausfall ihres digitalen Arbeitsplatzes handlungsfähig bleiben
Wenn E-Mail, Videokonferenzen, Kalender und Cloud-Dokumente gleichzeitig ausfallen, steht nicht nur die IT still. Eine vorbereitete, unabhängige Kommunikationsumgebung hält Krisenstab, Mitarbeitende und Partner erreichbar und macht digitale Resilienz zu einer messbaren Managementdisziplin. Management Summary Kommunikation ist geschäftskritisch: Fällt der digitale Arbeitsplatz aus, werden aus technischen Störungen binnen kurzer Zeit operative, finanzielle und reputative Risiken…. First…
-
JadePuffer agentic AI attacks target Azure, destroy cloud resources
The JadePuffer ransomware operator is targeting Azure tenants with agent-driven attacks that conduct reconnaissance, steal credentials, and destroy core components. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/jadepuffer-agentic-ai-attacks-target-azure-destroy-cloud-resources/
-
JadePuffer AI Actor Compromises Azure Tenant in Destructive Cloud Attack
The agentic threat actor may have used exposed credentials to access resources and delete cloud-based storage, applications, and databases. First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/jadepuffer-ai-actor-azure-tenant-destructive-cloud-attack
-
Wiz Unveils MSP Program To Boost Cloud, AI Managed Security Services: Exclusive
Wiz is introducing a new MSP program as part of its expanding channel strategy, with the aim of enabling partners to accelerate delivery of managed services around the company’s cloud and AI security platform, Wiz Channel Chief Andy Ritchie tells CRN exclusively. First seen on crn.com Jump to article: www.crn.com/news/security/2026/wiz-unveils-msp-program-to-boost-cloud-ai-managed-security-services-exclusive
-
Lumma, RedLine and Vidar Infostealers Fuel Cloud Credential Theft Campaigns
Tags: api, attack, cloud, credentials, cyber, data-breach, exploit, identity, infrastructure, malware, theft, threatInfostealer malware is increasingly becoming the bridge between a compromised developer workstation and an enterprise cloud environment, with Lumma, RedLine, and Vidar emerging as major threats to credentials, API keys, and active browser sessions. Identity, rather than exposed infrastructure, remains the most valuable cloud attack surface. Attackers no longer need to exploit a public-facing server…
-
Wachstumsmarkt Cloud-Sicherheit
Der Umsatz mit Cloud-Sicherheitslösungen in Deutschland könnte bis 2030 auf 280 Mio. Euro steigen. Für 2026 rechnen die Expertinnen und Experten der Statista Market Insights mit einem Umsatz von 157 Millionen Euro. Auch innerhalb des gesamten Marktes für Cyber-Sicherheitslösungen gewinnt das Cloud-Segment an Gewicht: Der Anteil steigt von 2,8 Prozent im Jahr 2023 auf 6,1……
-
Wachstumsmarkt Cloud-Sicherheit
Der Umsatz mit Cloud-Sicherheitslösungen in Deutschland könnte bis 2030 auf 280 Mio. Euro steigen. Für 2026 rechnen die Expertinnen und Experten der Statista Market Insights mit einem Umsatz von 157 Millionen Euro. Auch innerhalb des gesamten Marktes für Cyber-Sicherheitslösungen gewinnt das Cloud-Segment an Gewicht: Der Anteil steigt von 2,8 Prozent im Jahr 2023 auf 6,1……
-
12 Best Cloud Compliance Tools Compared (2026): Features Pricing
For most teams facing an audit, Vanta is the best overall compliance automation platform, with Drata the closest rival choose between them on integrations and framework-crosswalk economics. For technical posture evidence, free open-source Prowler plus a CNAPP compliance view (Wiz, Prisma, Orca) covers the engineering side to prevent cloud misconfigurations that lead to data breaches.…
-
11 Best GCP Security Tools Compared (2026): Features Pricing
Securing Google Cloud starts with Security Command Center Standard included with every org and the best free first move while Wiz is the best third-party platform for estates whose finding volume and service-account sprawl demand attack-path triage. This guide compares the best GCP security tools on capability and pricing structure, consolidates a duplicate from stale…
-
12 Best Azure Security Tools Compared (2026): Features Pricing
For most Azure estates, Microsoft Defender for Cloud is the best starting point its free foundational tier plus published per-resource plans make it the only major platform you can price from a public rate card. Wiz is the best third-party addition once finding volume demands attack-path prioritization. This comparison covers 12 of the best Azure…
-
From Tokenmaxxing to FDEmaxxing: The Next Enterprise AI Trap
Why Enterprise AI Needs Architecture, Not More Engineers or Tokens Enterprises have never standardized on one database, cloud or language, and AI should be no different. The real fix is a multi-model architecture with governance built in: risk profiling for every agent, guardian agents that monitor other agents and a learning loop the enterprise owns…
-
MacSync’s New Infection Chain Shows How Mac Malware Is Becoming More Sophisticated
A newly observed MacSync campaign shows a marked evolution in macOS-focused crimeware, replacing relatively simple AppleScript-driven delivery with layered binary loaders, encrypted modules, cloud-hosted staging, and a persistent backdoor. Kaspersky first identified the new infection chain in the wild in September 2026, describing it as a significant upgrade for the malware family formerly marketed as…
-
Vast Data pitches confidential AI to APAC’s regulated industries
DataEnclave, due in the coming months, protects AI models and sensitive data while they are processed on GPUs, with Australian neocloud Sharon AI among the cloud providers lined up to offer it First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366651204/Vast-Data-pitches-confidential-AI-to-APACs-regulated-industries
-
Storm-3168 Hackers Abuse Compromised Service Principals to Destroy Azure Cloud Resources
Microsoft has uncovered a destructive Azure campaign linked to Storm-3168, also known as JADEPUFFER, in which attackers abused compromised service principals to map cloud environments, delete critical resources, target recovery safeguards, and obtain storage-account credentials. The activity shows how a single exposed workload identity can give attackers the automation and permissions needed to cause rapid…
-
7-Year, $11.6B Anthropic Deal Drives Akamai Cloud Buildout
CPU-Based Agreement With Anthropic Will Require Major Cloud Capacity From Akamai. San Francisco-based frontier AI lab Anthropic committed $11.6 billion over seven years to Akamai cloud infrastructure for CPU-based AI workloads, giving Boston-area Akamai its largest contract ever and triggering a $5.5 billion capacity buildout ahead of revenue beginning in 2027. First seen on govinfosecurity.com…
-
Microsoft expands Middle East cloud and AI footprint with $10bn commitment
Regional strategy combines infrastructure investment, cyber security partnerships and skills development to support national AI agendas First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366651294/Microsoft-expands-Middle-East-cloud-and-AI-footprint-with-10bn-commitment
-
Anthropic rolls out up to $250 in free Claude Code credits, but only for cloud sessions
Tags: cloudAnthropic now allows you to run Claude Code via cloud sessions without signing up for the research preview, and it’s offering up to $250 in free usage credits, so more users can give it a try. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/artificial-intelligence/anthropic-rolls-out-up-to-250-in-free-claude-code-credits-but-only-for-cloud-sessions/
-
The SOC Doesn’t Need to Start Over with Every Alert
Security leaders keep debating whether AI will produce an entirely new class of cyberattack. The nearer change is quieter and already visible: AI has made a failed attack cheap to retry.The routine version looks like this. An attacker lands on a low-privilege cloud account, and the first try at privilege escalation goes nowhere. That dead…
-
Allianz für digitale Souveränität – Cisco, Stackit und Controlware liefern Cloud-Lösungen
First seen on security-insider.de Jump to article: www.security-insider.de/cisco-stackit-und-controlware-liefern-cloud-loesungen-a-6082745038504bf7cdf26d0a344d42dd/
-
Blueprint Alliance entwickelt herstellerübergreifende Sicherheitsarchitektur für KI-Agenten
AWS, Okta, CrowdStrike, Google Cloud und weitere Anbieter gründen die Blueprint Alliance für sichere Identitäten, Governance und Laufzeitkontrolle von KI-Agenten. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/blueprint-alliance-entwickelt-herstelleruebergreifende-sicherheitsarchitektur-fuer-ki-agenten/a46472/
-
Blueprint Alliance entwickelt herstellerübergreifende Sicherheitsarchitektur für KI-Agenten
AWS, Okta, CrowdStrike, Google Cloud und weitere Anbieter gründen die Blueprint Alliance für sichere Identitäten, Governance und Laufzeitkontrolle von KI-Agenten. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/blueprint-alliance-entwickelt-herstelleruebergreifende-sicherheitsarchitektur-fuer-ki-agenten/a46472/
-
Threat Hunting: Datenqualität wird zum größten Bremsklotz
SANS zeigt: 50 Prozent der Threat Hunter sehen Datenqualität und -menge als größtes Hindernis. Cloud-Telemetrie und Erfolgsmessung bleiben zentrale Baustellen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/threat-hunting-datenqualitaet-wird-zum-groessten-bremsklotz/a46466/
-
New infosec products of the month: September 2026
Here’s a look at the most interesting products from the past week, featuring releases from Akeyless, Akuity, Bitsight, BugBase, Cloud Range, Cohesity, Dataminr, Gurucul, … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/25/new-infosec-products-of-the-month-september-2026/
-
SASE Converges Network & Security Into One Cloud Solution
Enterprise computing is moving to the edge. Keeping it secure requires tactics far beyond putting up firewalls. First seen on darkreading.com Jump to article: www.darkreading.com/cloud-security/sase-converges-network-security-one-cloud

