Security news aggregator

Latest coverage for Misconfiguration

Discover the risks & prevention strategies for misconfiguration in infosec. Stay updated on latest incidents & best practices to bolster your cyber defenses.

277 headlines in this view

Refine the feed

Search across headline titles and summaries.

Tag briefing

Background for this topic.

Misconfiguration is a common security issue that occurs when computing assets are set up incorrectly, potentially leaving them vulnerable to unauthorized access and data breaches. Within the context of information security, misconfiguration can happen at any level of an IT system, including the network, application, server, database, or platform.

Examples of misconfigurations include default usernames and passwords that have not been changed, unnecessary services running on a system, open and unprotected network ports, and improper file and directory permissions. Misconfigurations can lead to a wide range of problems, from minor disruptions to serious security incidents that expose sensitive information and compromise system integrity.

Addressing misconfiguration involves regular security reviews, adopting secure configuration policies, continuous monitoring, and automated tools to detect and rectify settings that might deviate from established security standards. It is a critical component of a robust cybersecurity strategy.

Volume over time

Weekly headline count for the current query.

Showing 20 most recent headlines of 277 Filtered view

19.6 Billion files are exposed in misconfigured cloud buckets, including 685K credential files and nearly 1M database dumps. There’s a comfortable myth most people carry around: that the data they hand to companies is locked somewhere safe. Researchers at Mysterium VPN just ran the numbers, and the numbers disagree. Across 535,480 publicly listable cloud storage […]

The Hacker News 1 week, 6 days ago

When Identity is the Attack Path

Consider a cached access key on a single Windows machine. It got there the way most cached credentials do - a user logged in, and the key stored itself automatically. Standard AWS behavior. No one misconfigured anything or violated a policy. Yet that single key, which was easily accessible to a minor-league attacker, could have opened a path to some 98% of entities in the company's cloud

Exposed UIs, weak authentication, and risky defaults could turn cloud-native AI apps on Kubernetes into potential targets by threat actors. Learn how exploitable misconfigurations lead to RCE and data leaks. The post When configuration becomes a vulnerability: Exploitable misconfigurations in AI apps appeared first on Microsoft Security Blog.

Bank Info Security 1 month, 2 weeks ago

A Token Flaw Turned Azure's AI Agent Into a Spy

Outsiders Could Exploit Misconfig to Stream Commands, CredentialsA misconfiguration in Microsoft's Azure SRE Agent may have allowed any Azure account holder from any company to tap into another organization's agent conversations in real time, watching commands, outputs and credentials, leaving no trace.

CISA: Iran-Linked Groups Actively Exploiting OT Exposure Risks, PLC ProgrammersFederal agencies are warning that Iranian-linked actors have begun actively exploiting internet-facing PLCs and misconfigured OT systems across U.S. critical infrastructure, enabling network access, lateral movement and potential disruption amid rising geopolitical tensions.

Security teams today are not short on tools or data. They are overwhelmed by both.  Yet within the terabytes of alerts, exposures, and misconfigurations – security teams still struggle to understand context:  Q: Which exposures, misconfigurations, and vulnerabilities chain together to create viable attack paths to crown jewels? Even the most mature security teams can’t answer that

Not every cloud breach starts with malware or a zero-day. In this incident, attackers discovered an exposed Spring Boot Actuator endpoint, harvested credentials from leaked configuration data, then used the OAuth2 Resource Owner Password Credentials (ROPC) flow to authenticate without MFA.

Bank Info Security 2 months, 3 weeks ago

Salesforce Sounds Alarm Over Fresh Data Extortion Campaign

CRM-Obsessed ShinyHunters Gang Exploits Misconfigured Customer Experience PortalsA prolific and noisy cybercrime gang with a penchant for stealing Salesforce customers' data and holding it ransom is taking advantage of misconfigured guest accounts meant to provide public access to services meant to remain private, using a Google scanning tool to identify vulnerable accounts.

Bank Info Security 3 months, 2 weeks ago

A Misconfigured AI Could Trigger Infrastructure Collapse

AI Fumbles, Not Hackers, Pose Next Shutdown Threat by 2028: GartnerA misconfigured artificial intelligence system could do what hackers have tried and failed to accomplish: shut down an advanced economy's critical infrastructure. The warning centers on scenarios where AI autonomously shuts down vital services, misinterprets sensor data or triggers unsafe actions.

Bank Info Security 3 months, 3 weeks ago

Moltbook Gave Everyone Control of Every AI Agent

Database Misconfiguration Exposed 1.5 million API TokensA misconfigured database at Moltbook, the viral social network for AI agents, exposed 1.5 million API authentication tokens, 35,000 email addresses and private messages. Security researchers discovered unauthenticated read and write access to all platform data within days of launch.

Bank Info Security 3 months, 4 weeks ago

Varonis Acquires AllTrue.ai to Extend Security for AI Agents

Varonis CEO Yaki Faitelson Warns Misconfigured AI Is an Accident Waiting to HappenVaronis has acquired AllTrue.ai to close visibility gaps in AI security. CEO Yaki Faitelson said enterprises are deploying AI agents that access vast datasets at high speed without understanding permissions identity context or abnormal behavior creating urgent demand for data-first AI security.

Bank Info Security 3 months, 4 weeks ago

Varonis Acquires AllTrue.ai to Extend Security for AI Agents

Varonis CEO Yaki Faitelson Warns Misconfigured AI Is an Accident Waiting to HappenVaronis has acquired AllTrue.ai to close visibility gaps in AI security. CEO Yaki Faitelson said enterprises are deploying AI agents that access vast datasets at high speed without understanding permissions identity context or abnormal behavior creating urgent demand for data-first AI security.

Loading more headlines...