Today’s columnist, Tim Erlin of Tripwire, says while Amazon may change some default security configurations now that Adam Selipsky has taken the top job at AWS, companies looking to boost cloud security need to align to industry standards, leverage automation to limit cloud misconfigurations and don't rely solely on cloud service providers for security.
The Mercedes-Benz leak highlights an issue that security teams keep seeing time and again: Private data that’s accidentally left publicly accessible on a cloud storage platform by a vendor.
Security starts before detection and response, but many organizations focus there first. Mature security teams understand the importance of identification and protection. Establishing good cyber hygiene and taking proactive measures to secure themselves against the ever-increasing threat landscape is a critical first step in a holistic security program. How should organizations build a holistic security […]
Aqua Security reported that data it collected from honeypots protecting containers over a six-month period revealed that 50% of misconfigured Docker APIs are attacked by botnets within 56 minutes of being set up.
Another company was caught in a cloud misconfiguration issue as Wegmans Food Markets notified its customers that two of its cloud databases were left open to potential outside access.
Allan Liska of Recorded Future’s computer security incident response team, lists out the reasons why security teams should take the six exploited vulnerabilities seriously.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.