Tech

AWS customers hit by major cyberattack which then stored stolen credentials in plain sight

Share
Share


  • Researchers find vulnerabilities in public sites that exposed sensitive information
  • They later discovered a campaign using the flaws to exfiltrate data from “millions of websites”
  • The crooks were selling the data on the dark web for “hundreds of euros”

Misconfigured cloud instances have once again been abused to steal sensitive information such as login credentials, API keys, and more.

This time around, the victims were countless Amazon Web Services (AWS) customers who don’t seem to understand the shared responsibility model of cloud infrastructure.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Chatbots are on the rise, but customers still trust human agents more
Tech

Chatbots are on the rise, but customers still trust human agents more

Credit: CC0 Public Domain Customers contact companies regularly to purchase products and...

XO, Kitty season 3: everything we know so far about the hit show’s return to Netflix
Tech

XO, Kitty season 3: everything we know so far about the hit show’s return to Netflix

XO, Kitty season 3: key information – Officially renewed in February– Filming...

This monster 30TB hard drive costs less than 0 and is built for nonstop data hoarding
Tech

This monster 30TB hard drive costs less than $620 and is built for nonstop data hoarding

Seagate’s 30TB Exos M is helium-filled and built for data centers, not...

New technique hides encryption keys under user data using standard 3D NAND flash memory
Tech

New technique hides encryption keys under user data using standard 3D NAND flash memory

Flash memory now doubles as secure key storage using conceal-and-reveal method Encryption...