Back to Feed

Tag

Cloud Security

50 items tagged #cloud-security

Articles

New Chaos Variant Targets Misconfigured Cloud Deployments, Adds SOCKS Proxy

New Chaos malware variant targets misconfigured cloud deployments, adds SOCKS proxy capability.

Most Organisations Face an Unsecured API Surge As AI Agents Outpace Security

Salt Security report: 92% of orgs lack security maturity for AI agents despite 66% API growth surge.

Russian Forest Blizzard Hackers Hijack Home Routers for Global Spying

Russian Forest Blizzard group hijacks home routers for DNS-based espionage targeting 5,000+ devices globally.

Grafana Patches AI Bug That Could Have Leaked User Data

Grafana patches AI vulnerability allowing data exfiltration via malicious web instructions.

Docker CVE-2026-34040 Lets Attackers Bypass Authorization and Gain Host Access

Docker CVE-2026-34040 allows attackers to bypass authorization plugins and gain host access.

SOHO router compromise leads to DNS hijacking and adversary-in-the-middle attacks

Forest Blizzard compromises SOHO routers for DNS hijacking and AiTM attacks on Microsoft services.

GPUBreach: Root Shell Access Achieved via GPU Rowhammer Attack

Researchers demonstrate GPU Rowhammer attack enabling root shell access via memory corruption.

New GPUBreach Attack Enables Full CPU Privilege Escalation via GDDR6 Bit-Flips

GPUBreach attack enables full CPU privilege escalation via GDDR6 RowHammer bit-flips in NVIDIA GPUs.

New GPUBreach attack enables system takeover via GPU rowhammer

GPUBreach attack exploits GPU rowhammer to enable privilege escalation and full system compromise.

Iran-Linked Password-Spraying Campaign Targets 300+ Israeli Microsoft 365 Organizations

Iran-linked actor wages password-spraying campaign against 300+ Israeli Microsoft 365 organizations.

How LiteLLM Turned Developer Machines Into Credential Vaults for Attackers

TeamPCP compromised LiteLLM PyPI packages to inject infostealer malware targeting developer credentials.

Google Wants to Transition to Post-Quantum Cryptography by 2029 https://t.co/sz8CdkNcuL

Google commits to post-quantum cryptography transition by 2029.

European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack

European Commission confirms 300GB data theft via compromised Trivy vulnerability scanner supply chain attack.

AI agents can turn into "double agents" if compromised. Our research found a critical permission...

Google Cloud Vertex AI Agent Engine has critical permission flaw enabling unauthorized access and data exfiltration.

CERT-EU: European Commission hack exposes data of 30 EU entities

European Commission cloud breach via compromised AWS key exposes data of 30 EU entities.

ShinyHunters Hackers Claim Theft of 3M+ Cisco Records, Threaten Public Leak

ShinyHunters claims theft of 3M+ Cisco records via Salesforce and AWS, threatens April 3 leak.

Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials

Hackers exploit CVE-2025-55182 in Next.js to breach 766 hosts and steal credentials via NEXUS Listener.

Residential proxies evaded IP reputation checks in 78% of 4B sessions

Residential proxies evaded IP reputation checks in 78% of 4B malicious sessions over three months.

‼️ Chrome Zero-Day CVE-2026-5281: A Use-After-Free in Dawn's WebGPU Layer https://t.co/u4AM1BJjPN

Chrome zero-day CVE-2026-5281 use-after-free vulnerability discovered in Dawn WebGPU layer.

ShadowByt3s Claims Starbucks Breach With 10GB of Proprietary Source Code, Beverage Machine Firmware, and Global Management Tools From Compromised S3 Bucket

ShadowByt3s claims 10GB Starbucks breach via misconfigured S3 bucket with source code, firmware, and management tools.

ShadowByt3s Claims Starbucks Breach With 10GB of Proprietary Source Code, Beverage Machine Firmwa...

ShadowByt3s claims breach of Starbucks S3 bucket containing 10GB of source code and firmware.

‼️🇺🇸 Threat group "ShadowByt3s" claims breach of Starbucks, alleging 10GB of stolen source code...

Threat group ShadowByt3s claims breach of Starbucks with 10GB stolen source code from S3 bucket.

‼️Airbus allegedly has Artifactory/DevOps data leaked on a popular cybercrime forum. Threat Acto...

Threat actor AckLine claims to have leaked Airbus Artifactory/DevOps data on cybercrime forum.

FulcrumSec Breaches Unique Computing, ReFocus AI, and Gennet AI Exposing 23,000 Insurance Policyholders, $797M in Premiums, Driver Licenses, SSNs, and Proprietary ML Models From a Single Unpatched AWS Account

FulcrumSec breaches three AI/insurance firms via unpatched CVE, exposes 23K policyholders and $797M in premiums.

FulcrumSec Breaches Unique Computing, ReFocus AI, and Gennet AI Exposing 23,000 Insurance Policyh...

FulcrumSec breaches three AI/insurance firms, exposing 23K policyholders and $797M in premiums via unpatched AWS.

Microsoft Warns of WhatsApp-Delivered VBS Malware Hijacking Windows via UAC Bypass

Microsoft warns of WhatsApp-delivered VBS malware using UAC bypass and living-off-the-land techniques.

Google Addresses Vertex Security Issues After Researchers Weaponize AI Agents

Palo Alto researchers weaponize Google Vertex AI agents, exposing excessive service account permissions and insider

Google Drive ransomware detection now on by default for paying users

Google Drive ransomware detection now enabled by default for paid workspace users.

Iran Threatens to Start Attacking Major US Tech Firms on April 1

Iran's IRGC threatens coordinated cyberattacks on US tech firms starting April 1.

TeamPCP Breaches Cloud, SaaS Instances With Stolen Credentials

TeamPCP threat group breaches cloud and SaaS instances using stolen credentials.

TeamPCP Moves From OSS to AWS Environments

TeamPCP threat group pivots from OSS supply chain attacks to AWS credential exfiltration and lateral movement.

European Commission Reports Cyber Intrusion and Data Theft

ShinyHunters claims 350GB theft from European Commission cloud infrastructure.

European Commission confirms data breach after Europa.eu hack

European Commission confirms data breach after ShinyHunters hacks Europa.eu AWS platform.

I Decompiled the White House's New App

White House Android app contains cookie/paywall bypass injector, GPS tracking every 4.5 minutes, and external

‼️ The European Commission announced earlier today that it was breached. A hacker is claiming the...

European Commission reports AWS account breach; hacker claims 350 GB data theft.

‼️Access to over 30 Claro Cloud user websites is allegedly being offered on a popular cybercrime...

Over 30 Claro Cloud customer websites allegedly compromised and offered for sale on cybercrime forum.

Google Sets 2029 Deadline for Quantum-Safe Cryptography

Google commits to quantum-safe cryptography migration by 2029.

European Commission investigating breach after Amazon cloud account hack

European Commission investigating breach after threat actor compromised Amazon cloud account with 350GB stolen data.

European Commission investigating breach after Amazon cloud hack

European Commission investigating breach after threat actor accessed Amazon cloud infrastructure and stole 350 GB of

Web Shells: Types, Mitigation & Removal

Sucuri blog details web shell threats, types, and mitigation strategies for compromised web servers.

Security for the Quantum Era: Implementing Post-Quantum Cryptography in Android

Google announces Post-Quantum Cryptography integration in Android 17 with ML-DSA signatures.

Google Authenticator: The Hidden Mechanisms of Passwordless Authentication

Unit 42 analyzes Google Authenticator's synced passkey architecture and hidden attack surface.

TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD Compromise

TeamPCP backdoors LiteLLM Python package versions 1.82.7–1.82.8 with credential harvester and Kubernetes lateral

TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI Credentials

TeamPCP compromises Checkmarx GitHub Actions using stolen CI credentials from Trivy breach.

Gcore Radar report reveals 150% surge in DDoS attacks year-on-year

Gcore Radar reports 150% YoY surge in DDoS attacks with 12 Tbps peak volume in Q4 2025.

‼️ The actor is claiming 590TB of data from OVHcloud in a shared file tree. https://t.co/HLPw6Ys1vq

Threat actor claims 590TB data theft from OVHcloud in shared file tree.

🚨Major Unconfirmed Breach🚨A threat actor is claiming to sell a major breach of OVHcloud, one of...

Threat actor claims breach of OVHcloud, Europe's largest hosting provider, on dark web.

‼️🇮🇳🇧🇷🇨🇴 A threat actor using the handle "vexin" is offering corporate cloud accesses at a...

Threat actor 'vexin' sells compromised cloud access for 7 organizations across India, Brazil, Colombia at 50% discount.

Routers Replace PCs as Primary Threat Vector in Evolving Device Risk Landscape

Forescout report shows routers now primary enterprise threat vector, surpassing PCs.

‘CanisterWorm’ Springs Wiper Attack Targeting Iran

TeamPCP deploys CanisterWorm wiper targeting Iran via compromised cloud infrastructure.