Stay Informed

Cybersecurity News

Home / News

Clear

Quick searches: Linux Windows Microsoft 365 AWS OVH VMware WordPress Fortinet Citrix VPN

175 result(s) for "AWS" — best match first.

Latest headlines from security outlets

Collected every two hours from specialised publications — each link leads to the original article.

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Researchers Show How Prompt Injection Could Expose AWS AgentCore Credentials

Security researchers have shown how hidden instructions in an AWS AgentCore support ticket could push an AI agent into running commands as root and exposing a …

AWS

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities
openSUSE amazon-ecs-init Moderate Access Risk Vuln 2026-11345-1

An openSUSE Tumbleweed update for amazon-ecs-init addresses a vulnerability, CVE-2026-56852, rated moderate, with various CVSS scores indicating severity and i…

Linux AWS

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities
Shark Vacuum Vulnerability Lets Attackers Hijack Cameras Across an Entire AWS Region

A researcher found that anyone with physical access to one Shark robot vacuum can extract its AWS IoT certificate and use it to take over other Shark vacuums r…

AWS

LinuxSecurity - Security Advisories
LinuxSecurity - Security Advisories Vulnerabilities
openSUSE aws-nitro-enclaves-cli Important Multiple Risks Fix 2026-21406-1

openSUSE released a security update for aws-nitro-enclaves-cli, addressing seven vulnerabilities, including buffer overflows and arbitrary code execution, alon…

Linux AWS

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses Vulnerabilities
Amazon Q’s MCP Flaw Is an Industry Warning: AI Tools Still Lack Workspace Trust Standards

CVE-2026-12957 in Amazon Q is the third MCP auto-execution vulnerability in three AI coding tools. The pattern reveals a shared design failure, not just a sing…

AWS

The Hacker News
The Hacker News Vulnerabilities
Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP Configs

A high-severity flaw in Amazon Q Developer let a malicious repository run commands and steal a developer's cloud credentials. The path was short: a developer o…

AWS

The Hacker News
The Hacker News Breaches & leaks
PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network

The threat actor known as PCPJack has hijacked cloud servers associated with Amazon Web Services (AWS), Google Cloud, and Microsoft Azure to create a covert SM…

Azure AWS Google Cloud

The Hacker News
The Hacker News
We Found Eight Attack Vectors Inside AWS Bedrock. Here's What Attackers Can Do with Them

AWS Bedrock is Amazon's platform for building AI-powered applications. It gives developers access to foundation models and the tools to connect those models di…

Microsoft 365 AWS

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Understanding the AWS Shared Responsibility Model and Linux Security Risks

For Linux teams, the AWS shared responsibility model becomes real the first time an issue crosses layers you cannot inspect. The question isn’t philosophical. …

Linux AWS

The Hacker News
The Hacker News
Amazon Exposes Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure

Amazon's threat intelligence team has disclosed details of a "years-long" Russian state-sponsored campaign that targeted Western critical infrastructure betwee…

AWS

The Hacker News
The Hacker News
FIN6 Uses AWS-Hosted Fake Resumes on LinkedIn to Deliver More_eggs Malware

The financially motivated threat actor known as FIN6 has been observed leveraging fake resumes hosted on Amazon Web Services (AWS) infrastructure to deliver a …

AWS

The Hacker News
The Hacker News Vulnerabilities
New “whoAMI” Attack Exploits AWS AMI Name Confusion for Remote Code Execution

Cybersecurity researchers have disclosed a new type of name confusion attack called whoAMI that allows anyone who publishes an Amazon Machine Image (AMI) with …

AWS

Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Latest Hacking News | Cyber Security News, Hacking Tools and Penetration Testing Courses
Malicious Android App On Amazon Appstore Distributed Spyware

Researchers found a malicious Android app on the Amazon Appstore that targeted users with spyware.…Malicious Android App On Amazon Appstore Distributed Spyware…

AWS Android

The Hacker News
The Hacker News Breaches & leaks
Malicious PyPI Package ‘Fabrice’ Found Stealing AWS Keys from Thousands of Developers

Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) that has racked up thousands of downloads for over three years…

AWS

The Hacker News
The Hacker News Vulnerabilities
AWS Cloud Development Kit Vulnerability Exposes Users to Potential Account Takeover Risks

Cybersecurity researchers have disclosed a security flaw impacting Amazon Web Services (AWS) Cloud Development Kit (CDK) that could have resulted in an account…

AWS

The Hacker News
The Hacker News Breaches & leaks
New 'ALBeast' Misconfiguration Exposes Weakness in AWS Application Load Balancer

As many as 15,000 applications using Amazon Web Services' (AWS) Application Load Balancer (ALB) for authentication are potentially susceptible to a configurati…

AWS

The Hacker News
The Hacker News Breaches & leaks
New 'ALBeast' Vulnerability Exposes Weakness in AWS Application Load Balancer

As many as 15,000 applications using Amazon Web Services' (AWS) Application Load Balancer (ALB) for authentication are potentially susceptible to a configurati…

AWS

The Hacker News
The Hacker News
Malicious 'SNS Sender' Script Abuses AWS for Bulk Smishing Attacks

A malicious Python script known as SNS Sender is being advertised as a way for threat actors to send bulk smishing messages by abusing Amazon Web Services (AWS…

AWS

The Hacker News
The Hacker News
Alert: Threat Actors Can Leverage AWS STS to Infiltrate Cloud Accounts

Threat actors can take advantage of Amazon Web Services Security Token Service (AWS STS) as a way to infiltrate cloud accounts and conduct follow-on attacks.Th…

AWS

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Threat Actors Use AWS SSM Agent as a Remote Access Trojan

Threat actors have been observed using Amazon Web Services ( AWS ) 's System Manager (SSM) agent as a Remote Access Trojan (RAT) on Linux and Windows machines.

Linux Windows AWS

The Hacker News
The Hacker News Breaches & leaks
Legion Malware Upgraded to Target SSH Servers and AWS Credentials

An updated version of the commodity malware called Legion comes with expanded features to compromise SSH servers and Amazon Web Services (AWS) credentials asso…

AWS

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
AWS Open Sources Security Tools

AWS is open sourcing its Cedar policy language and authorization engine and Snapchange, an open source snapshot-based fuzzing tool.

AWS

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles
Amazon Linux 2023, a Cloud-Optimized Linux Distro, Is Now Available

Earlier this week, Amazon announced the availability of Amazon Linux 2023, its third-generation Linux distribution. With this distribution, Amazon is promising…

Linux AWS

LinuxSecurity - Security Articles
LinuxSecurity - Security Articles Vulnerabilities
AWS Plugs Holes in ECR APIs

AWS has patched a vulnerability in its Elastic Container Registry (ECR) that was uncovered by Lightspin researcher Gafnit Amiga during an examination of AWS's …

AWS Docker