Collected every two hours from specialised publications — each link leads to the original article.
The threat actor known as PCPJack has hijacked cloud servers associated with Amazon Web Services (AWS), Google Cloud, and Microsoft Azure to create a covert SM…
Cybersecurity researchers have disclosed a security "blind spot" in Google Cloud's Vertex AI platform that could allow artificial intelligence (AI) agents to b…
A government entity and a religious organization in Taiwan were the target of a China-linked threat actor known as Evasive Panda that infected them with a prev…
A set of novel attack methods has been demonstrated against Google Workspace and the Google Cloud Platform that could be potentially leveraged by threat actors…
Malicious actors can take advantage of "insufficient" forensic visibility into Google Cloud Platform (GCP) to exfiltrate sensitive data, a new research has fou…
Threat actors are exploiting improperly-secured Google Cloud Platform (GCP) instances to download cryptocurrency mining software to the compromised systems as …
Cybersecurity researchers have disclosed three now-patched security vulnerabilities impacting Google's Gemini artificial intelligence (AI) assistant that, if s…
Cloud solutions are more mainstream – and therefore more exposed – than ever before.In 2023 alone, a staggering 82% of data breaches were against public, priva…
Google Cloud has addressed a medium-severity security flaw in its platform that could be abused by an attacker who already has access to a Kubernetes cluster t…
Multi-cloud data storage, once merely a byproduct of the great cloud migration, has now become a strategy for data management. "Multi-cloud by design," and its…
Google on Wednesday shed light on a financially motivated threat actor named TRIPLESTRENGTH for its opportunistic targeting of cloud environments for cryptojac…
The threat actors linked toKinsinghave been observed attempting to exploit the recently disclosed Linux privilege escalation flaw called Looney Tunables as par…
Software development company Retool has disclosed that the accounts of 27 of its cloud customers were compromised following a targeted and SMS-based social eng…
The IDC cloud security survey 2021 states that as many as 98% of companies were victims of a cloud data breach within the past 18 months.Fostered by the pandem…
The IDC cloud security survey 2021 states that as many as 98% of companies were victims of a cloud data breach within the past 18 months.Fostered by the pandem…
Cloud attacks move fast — faster than most incident response teams.In data centers, investigations had time. Teams could collect disk images, review logs, and …
Google on Wednesday disclosed that the Chinese state-sponsored threat actor known as APT41 leveraged a malware called TOUGHPROGRESS that uses Google Calendar f…
Cybersecurity researchers have discovered a novel attack that employs stolen cloud credentials to target cloud-hosted large language model (LLM) services with …
An active espionage campaign has been attributed to the threat actor known as Molerats that abuses legitimate cloud services like Google Drive and Dropbox to h…
The music streaming service MixCloud has fallen prey to a cybersecurity incident. It seems MixCloud has suffered a data breachMixCloud Suffered Data Breach Aff…
Beginning this year, Google is seemingly working towards improving user accounts' security. In February this year, Google announced the launchGoogle To Alert B…
"Warning ' Making your calendar public will make all events visible to the world, including via Google search. Are you sure?"Remember this security warning? No…
The massive data breach at Capital One ' America's seventh-largest bank, according to revenue ' has challenged many common assumptions about cloud computing fo…
Cybersecurity researchers have disclosed details of a new credential theft framework dubbed PCPJack that targets exposed cloud infrastructure and ousts any art…