Tech

AWS customers hit by major cyberattack which then stored stolen credentials in plain sight

Share
Share


  • Researchers find vulnerabilities in public sites that exposed sensitive information
  • They later discovered a campaign using the flaws to exfiltrate data from “millions of websites”
  • The crooks were selling the data on the dark web for “hundreds of euros”

Misconfigured cloud instances have once again been abused to steal sensitive information such as login credentials, API keys, and more.

This time around, the victims were countless Amazon Web Services (AWS) customers who don’t seem to understand the shared responsibility model of cloud infrastructure.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
New technology promises to make display screens cheaper, brighter and more environmentally friendly
Tech

New technology promises to make display screens cheaper, brighter and more environmentally friendly

Credit: Pixabay/CC0 Public Domain A radical new approach to display screen technology...

How do we avoid the next airport disaster like Newark? An expert says 6G could be the solution
Tech

How do we avoid the next airport disaster like Newark? An expert says 6G could be the solution

Credit: Unsplash/CC0 Public Domain Newark Liberty International Airport was once again plunged...

Most businesses can’t fill cyber roles leaving huge gaps in defense
Tech

Most businesses can’t fill cyber roles leaving huge gaps in defense

Cisco surveyed 8,000 security and business leaders for a new report Most...