Cloud Security
Misconfigurations are the cause of most cloud breaches. Aryon is on a mission to prevent them.
Hi, what are you looking for?
A total of 22 patches were releaased, a majority for code execution, privilege escalation, and information disclosure vulnerabilities.
Misconfigurations are the cause of most cloud breaches. Aryon is on a mission to prevent them.
Seattle startup building technology to mitigate lateral movement and block “living off the land” techniques wins interest from investors.
Rad Security has raised $14 million in Series A funding for a defense platform for AI workloads and cloud infrastructure.
APIs are easy to develop, simple to implement, and frequently attacked. They are prime and lucrative targets for cybercriminals.
New York/Israel startup selling threat detection, investigation, and response tools raised $30 million in a Series B led by SYN Ventures.
Attackers are exploiting a critical vulnerability in Aviatrix Controller to execute arbitrary code in AWS cloud environments.
CISA’s Binding Operational Directive 25-01 requires federal agencies to align cloud environments with SCuBA secure configuration baselines.
Researchers warn about critical vulnerabilities in Ruijie Networks’ Reyee cloud management platform and Reyee OS network devices.
Veeam releases patches for two vulnerabilities in Service Provider Console, including a critical-severity remote code execution bug.
AWS and other vendors have announced new cloud security products and features at the cloud giant’s re:Invent 2024 conference.
AWS has launched Security Incident Response, a new service for quick and efficient security event management.
Dazz, based in Israel, raised about $110 million from prominent investors like Greylock, Cyberstarts, Insight Partners and Index Ventures.
Misconfigured instances of JupyterLab and Jupyter Notebook have been targeted by threat actors for sports stream ripping.
Google Cloud will be assigning CVE identifiers to serious cloud vulnerabilities, even ones that don’t require patching.
Starting this month, Google Cloud will be rolling out mandatory MFA for all users who sign in with a password.
Sysdig researchers trace a bizarre S3 bucket misconfiguration to EmeraldWhale, exposing 1.5 terabytes of stolen credentials and script.
More than 460 products and services are covered under Google Cloud’s new VRP, with 140 eligible for top tier bug bounty rewards.
Microsoft has patched ‘critical’ privilege escalation and information disclosure vulnerabilities in Power Platform, Dataverse and the Imagine Cup website.
Intel and AMD respond to new attack methods named TDXDown and CounterSEVeillance that can be used against TDX and SEV technology.
Google Cloud makes new confidential computing options generally available and expands attestation support.