Security news aggregator

Latest coverage for Cloud

Stay updated with the latest trends and security protocols in cloud computing. Navigate the evolving landscape of Cloud Information Security with us.

18 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Cloud is a term that describes the use of networked remote servers hosted on the internet to store, manage, and process data, as opposed to using a local server or a personal computer. In the context of information security, the cloud represents an environment that facilitates both the convenience and challenges of managing and safeguarding data and applications.

In this environment, security concerns include protecting data from unauthorized access, ensuring data integrity, preventing data breaches, and maintaining user privacy. Due to the shared resource nature of cloud services, information security must also address multi-tenancy issues, where multiple users or organizations store their data on the same physical hardware.

Additionally, the dynamic nature of cloud computing, with its ability to scale resources on demand, introduces unique security considerations. These include the need for robust identity and access management (IAM) systems, encryption of data both at rest and in transit, and adherence to compliance standards and regulations that govern data security in the cloud.

Securing the cloud involves a shared responsibility model—where cloud service providers are responsible for the security of the cloud infrastructure, and customers must secure their data and applications within the cloud. This collaborative effort helps ensure that the full potential of cloud computing is realized in a secure and compliant manner.

Volume over time

Weekly headline count for the current query.

Showing 18 most recent headlines Filtered view

An unknown threat actor has been observed using a large language model (LLM) agent to conduct post-compromise actions after obtaining initial access following the exploitation of a publicly-accessible Marimo network using a recently disclosed vulnerability

Cloud security company Wiz has revealed that it uncovered in-the-wild exploitation of a security flaw in a Linux utility called Pandoc as part of attacks designed to infiltrate Amazon Web Services (AWS) Instance Metadata Service (IMDS)

Bank Info Security 10 months, 2 weeks ago

Attackers Now 'Scanning Extensively' for Citrix Bleed 2

Ransomware Group Among Attackers Focused on Exploiting Citrix Netscaler FlawSecurity experts warn that attackers have ramped up their collective attempts to find and exploit Citrix NetScaler devices that remain unpatched. Cloud Security Group patched CVE-2025-5777, a flaw also known as "Citrix Bleed 2," nearly four weeks ago with a software update.

Trend Micro Research, News and Perspectives 3 years, 8 months ago

A Post-exploitation Look at Coinminers Abusing WebLogic Vulnerabilities

This blog entry details how Trend Micro Cloud One™ – Workload Security and Trend Micro Vision One™ effectively detected and blocked the abuse of the CVE-2020-14882 WebLogic vulnerability in affected endpoints.

Amazon Web Services (AWS) has fixed four security issues in its hot patch from December that addressed the critical Log4Shell vulnerability (CVE-2021-44228) affecting cloud or on-premise environments running Java applications with a vulnerable version of the Log4j logging library or containers. [...]