Skip to main content

Cloud Security

Cloud infrastructure and application security

Ominous cloud looms over government building with broken lock and shadowy device displaying sensitive data.

Microsoft Cloud Security Falls Short in Government Review

A scathing government review has revealed that Microsoft's cloud security documentation is woefully inadequate, leaving evaluators with a disturbing lack of confidence in the system's overall security posture. This shocking finding raises serious concerns about the reliability of one of Microsoft's largest cloud offerings.

Analyst 207
Lone laptop with faint padlock reflection sits on damaged concrete amidst shattered glass and wires under ominous cloudy sky.

Microsoft Cloud Security Review Exposes Gaps in Protection

A scathing internal government review of Microsoft's cloud security offering revealed alarming gaps in protection, with evaluators unable to determine whether sensitive information was safe as it moved across servers. The review team was left frustrated by a lack of proper detailed security documentation.

Analyst 207
Person sits at laptop amidst scattered papers and broken locks, with ominous cloud looming in background and smartphone…

APAC Firms Scramble to Bolster Cloud Security Amid Rising Identity Risks

As APAC firms rush to adopt cloud technology, they're faced with a daunting dilemma: do they risk advancing without a plan, or delay and let identity-related risks leave them vulnerable? With identity issues already causing the majority of cloud breaches in the region, the clock is ticking to get cloud security right.

Analyst 207
Cloud Security Gaps Exposed on World Cloud Security Day

Cloud Security Gaps Exposed on World Cloud Security Day

On World Cloud Security Day, it's clear that cloud security gaps are a pressing concern, but how do we measure the security of a technology that's both virtual and physical? Today's snapshot of cloud security reveals an uncertain landscape where digital protections and tangible safeguards intersect.

Analyst 207
Dark cityscape with a lone figure on a laptop as a shadowy ransomware figure looms in the background.

Google Bolsters Drive Security with Default Ransomware Detection

Google just supercharged Drive's security by activating its AI-powered ransomware detection feature by default for paying customers, giving them an extra layer of protection against malicious attacks. This move means organizations using Google Workspace tiers can breathe a sigh of relief, knowing their cloud storage is now equipped with automated threat detection and alerts.

Analyst 207
Critical Vertex AI Vulnerability Exposes Google Cloud Data to Alarming Risks

Critical Vertex AI Vulnerability Exposes Google Cloud Data to Alarming Risks

A critical vulnerability in Google Cloud's Vertex AI platform has been uncovered, leaving sensitive data alarmingly exposed to potential breaches - can we trust the security of the platforms powering our AI-driven innovations? This security blind spot could allow malicious actors to exploit AI agents and compromise cloud environments, putting organizations at risk.

Analyst 207
Alarming API Leak Exposes Global Bank's Cloud Credentials

Alarming API Leak Exposes Global Bank's Cloud Credentials

A recent study has uncovered a shocking security risk, revealing that hundreds of valid API keys - essentially digital master keys - have been left exposed on the web, putting sensitive information at risk. This alarming API leak highlights the urgent need for stronger API security measures to protect our data.

Analyst 207
Critical Cloud Breach Devastates European Commission Data

Critical Cloud Breach Devastates European Commission Data

A recent cloud data breach has struck the European Commission, compromising its Amazon Web Services infrastructure and raising urgent questions about the security of even the most protected systems. What's alarming is that this breach highlights the vulnerabilities of cloud-based data, putting sensitive information at risk.

Analyst 207
DoD Cloud Modernization Exclusive: Effortless Security

DoD Cloud Modernization Exclusive: Effortless Security

DoD Cloud Modernization can deliver faster decisions, resilient logistics, and stronger security—but only if we stop equating lift-and-shift with modernization. Re-architecting apps, automating defenses, and embracing DevSecOps will turn cloud promise into real protection for soldiers, allies, and critical supply chains.

Analyst 207
Faisal Hanafi Exclusive: Best AWS SLED Insights for 2026

Faisal Hanafi Exclusive: Best AWS SLED Insights for 2026

Faisal Hanafi’s practical playbook for 2026 turns cloud modernization into real results—start with measurable pilots and clear KPIs, pair data and workforce strategies, and invest in equity so every resident benefits.

Analyst 207
State-Sponsored Actors Deploy Exclusive Dangerous Backdoor

State-Sponsored Actors Deploy Exclusive Dangerous Backdoor

A new, dangerous backdoor is blurring the line between cloud platforms and covert surveillance — state-sponsored actors are weaponizing serverless services to hide, persist, and quietly siphon secrets. Security teams and governments now have to rethink defenses as these stealthy campaigns shift the battleground into trusted cloud infrastructure.

Analyst 207
Security Leaders Exclusive: Best Take on Cloudflare Outage

Security Leaders Exclusive: Best Take on Cloudflare Outage

The Cloudflare outage turned an hour of access problems into a test of trust—slowing or blocking services from ChatGPT to X and local government sites and forcing us to ask how much of the internet rests on one company’s shoulders.

Analyst 207
Secure Cloud Workloads: Exclusive Best Practices at Scale

Secure Cloud Workloads: Exclusive Best Practices at Scale

Dont let one wrong permission undo your cloud gains—learn the identity-first, Zero Trust practices top teams use to secure cloud workloads at scale. This practical guide delivers clear, scalable steps to balance speed, cost and risk.

Analyst 207
SonicWall Exclusive Damaging State-Sponsored Cloud Breach

SonicWall Exclusive Damaging State-Sponsored Cloud Breach

Imagine handing someone the wiring diagram to your house—now replace the house with your network: SonicWall says a state-sponsored actor used an API to access cloud-stored firewall configuration backups, exposing admin credentials, VPN keys and network blueprints that could let attackers slip past defenses.

Analyst 207
Identity Exclusive: Cloud’s Worst Security Risk

Identity Exclusive: Cloud’s Worst Security Risk

Identity is the single biggest cloud security risk — but with smarter access controls and a few practical fixes, you can shut down the weakest link fast.

Analyst 207
Padlock looms over cityscape at dusk with laptop and code in background.

AWS Targets Security Startups: Exclusive Best Bets

With just two weeks to apply, AWS Targets Security Startups fast-tracks early cloud and AI security founders into a cohort with AWS, CrowdStrike and Nvidia for mentorship, technical integration, and investor introductions. Its a rare chance to turbocharge fundraising and distribution—if youre ready to trade some independence for speed.

Analyst 207
Google Workspace: Exclusive Guide to Best Security

Google Workspace: Exclusive Guide to Best Security

Want to secure Google Workspace without turning your startup into a locked-down fortress? This guide helps first security hires prioritize real risks, fix permissive defaults, and keep teams productive while shutting the door on attackers.

Analyst 207
180,000 Records Exposed: Exclusive Critical Threat

180,000 Records Exposed: Exclusive Critical Threat

When an unsecured repository exposed 180,000 records—names, contacts and payment card numbers—those people were suddenly vulnerable to fraud. It’s a stark reminder of how tiny cloud misconfigurations and lax access controls can turn convenience into widespread risk.

Analyst 207
5M Records Exposed: Exclusive Alarming Auto Insurance Leak

5M Records Exposed: Exclusive Alarming Auto Insurance Leak

Over 5 million auto insurance records — including names, policy numbers, VINs and claims histories — were left publicly accessible by a simple cloud misconfiguration, turning routine paperwork into a roadmap for fraud. Find out how it happened and what you can do now to protect your privacy.

Analyst 207
Jingle Thief Exclusive: Alarming Gift Card Theft

Jingle Thief Exclusive: Alarming Gift Card Theft

Think gift cards are harmless holiday fun? Jingle Thief uses simple phishing and cloud misconfigurations to siphon stored value from retailers, turning promos into cash for criminals — shoppers and merchants need to wake up and tighten defenses.

Analyst 207
Jingle Thief Exclusive: Costly Cloud Hack Steals Millions

Jingle Thief Exclusive: Costly Cloud Hack Steals Millions

Imagine criminals turning your retailer’s cloud into a holiday ATM—Unit 42 warns the Jingle Thief gang uses phishing and smishing to steal credentials and exploit misconfigured cloud systems to issue and redeem millions in gift cards. Stronger identity controls, logging and vendor oversight are urgent fixes before consumers and merchants are left cleaning up the mess.

Analyst 207
cloud backups Risky: Stunning SonicWall Breach Exposes All

cloud backups Risky: Stunning SonicWall Breach Exposes All

Imagine your firewall’s master keys were left exposed — that’s what SonicWall customers discovered after the vendor revised its estimate from 5% to 100% of cloud backups affected, potentially exposing VPN credentials and network topology. If you used SonicWall cloud backups, inventory impacted devices, rotate credentials, and assume the worst while you await forensic details.

Analyst 207
cloud backup service Risky Breach: Must-Have Fixes

cloud backup service Risky Breach: Must-Have Fixes

SonicWall says attackers accessed cloud backup files holding encrypted firewall credentials and configs — turning the safety net meant to speed recovery into a potential roadmap for targeted attacks. If you used their Cloud Backup, assume exposure: rotate keys and credentials, review firewall and VPN access, and verify your backups and key management now.

Analyst 207
cloud collaboration: Must-Have Best Practices to Avoid Risk

cloud collaboration: Must-Have Best Practices to Avoid Risk

Cloud collaboration makes teamwork effortless — and oversharing dangerously easy; learn practical, friendly best practices to keep files moving fast while cutting exposure, from short-lived links and MFA to data stewardship and automated audits.

Analyst 207