CrowdStrike Update Bricks Estimated 8.5M Windows Machines Worldwide
InfoQ » Cloud Security
by Steef-Jan Wiggers
3d ago
CrowdStrike, an American cybersecurity technology company, recently released a product update that bricked an estimated 8.5 million computers running Windows globally, affecting businesses, individual users, and software companies. The company provides cloud workload protection, endpoint security, threat intelligence, and cyberattack response services. By Steef-Jan Wiggers ..read more
Visit website
AWS Introduces Malware Detection for Object Uploads to Amazon S3
InfoQ » Cloud Security
by Renato Losio
1w ago
At the latest re:Inforce cloud security conference, AWS announced GuardDuty Malware Protection for Amazon S3. This new malware scanning feature for Amazon S3 enables teams to detect malware in new object uploads using Amazon GuardDuty. By Renato Losio ..read more
Visit website
Terraform Fork OpenTofu 1.7.0 Brings State Encryption and More
InfoQ » Cloud Security
by Matt Saunders
2w ago
OpenTofu 1.7.0 has been released. OpenTofu is an open-source infrastructure-as-code tool for declarative cloud infrastructure creation using various APIs. It was forked last year from HashiCorp's Terraform after changes to the latter's license. The new version introduces several significant features and improvements. By Matt Saunders ..read more
Visit website
Over 100K+ Sites Hit by Polyfill.io Supply Chain Attack
InfoQ » Cloud Security
by Sergio De Simone
3w ago
E-Commerce security firm Sansec unveiled a new supply chain attack affecting the Polyfill JS service when accessed through a number of CDNs hosting it. According to Sansec, over 100K sites were hit. The original author of the service, Andrew Betts, suggested removing Polyfill from any sites using it. By Sergio De Simone ..read more
Visit website
Non-Production Endpoints as an Attack Surface in AWS
InfoQ » Cloud Security
by Renato Losio
1M ago
The security team at Datadog recently disclosed a security issue on AWS where non-production endpoints were used as an attack surface to silently perform permission enumeration. AWS has since remediated these specific bypasses. By Renato Losio ..read more
Visit website
Introducing New SKUs for Microsoft Azure Bastion: Developer and Premium Options Now Available
InfoQ » Cloud Security
by Steef-Jan Wiggers
1M ago
Microsoft recently announced new SKUs for its Azure Bastion service: a Developer SKU that is now generally available (GA) after its public preview last year and a premium SKU being rolled out in a public preview. By Steef-Jan Wiggers ..read more
Visit website
Falco 0.38.0 Released With Enhanced Driver Selection, Configurations and Real-Time Monitoring
InfoQ » Cloud Security
by Claudio Masolo
1M ago
The maintainers of Falco announced its latest version: 0.38.0. This is the first release since its graduation within CNCF. By Claudio Masolo ..read more
Visit website
Enhanced Security for Enterprises: Google Launches Google Threat Intelligence
InfoQ » Cloud Security
by Renato Losio
2M ago
At the recent RSA Conference in San Francisco, Google Cloud introduced Google Threat Intelligence, a new security offering for large organizations. The new solution provides users with actionable insights, external threat monitoring, attack surface management, digital risk protection, and in-depth analysis of Indicators of Compromise (IOC). By Renato Losio ..read more
Visit website
Microsoft Launches Trusted Signing in Public Preview: An End-to-End Signing Solution for Developers
InfoQ » Cloud Security
by Steef-Jan Wiggers
2M ago
Microsoft recently launched Trusted Signing in Public Preview, a fully managed end-to-end signing solution for developers backed by a Microsoft-managed certification authority. By Steef-Jan Wiggers ..read more
Visit website
Article: Delivering Software Securely: Techniques for Building a Resilient and Secure Code Pipeline
InfoQ » Cloud Security
by Satrajit Basu
2M ago
Your CI/CD pipeline can potentially expose sensitive information. Project teams often overlook the importance of securing their pipelines. This article covers approaches and techniques for securing your pipelines. By Satrajit Basu ..read more
Visit website

Follow InfoQ » Cloud Security on FeedSpot

Continue with Google
Continue with Apple
OR