Advertisement
Copperhelm Debuts Agentic Cloud Security Platform with $7M Seed Round
Copperhelm emerges from stealth with $7M in funding to launch an agentic cloud security platform focused on autonomous remediation and alert fatigue reduction.
Chinese APT Leverages PlugX & ShadowPad with Cloud C2 for Mongolian Espionage
A Chinese state-sponsored APT is exploiting Microsoft Outlook, Slack, Discord, and file.io for C2, deploying PlugX and ShadowPad in espionage operations targeting…
AI-Driven Cloud Attacks: The Zealot PoC and Autonomous Exploitation
Research into 'Zealot' reveals how AI-driven cloud attack simulations execute full-scale breaches faster than human defenders can effectively intervene.
Artemis AI Security Platform: Defending Against Autonomous Threats
Artemis emerges from stealth with $70M to provide AI-powered defense against autonomous threats targeting applications, cloud workloads, and user identities.
Asia's Digital Supply Chain Security: Regulatory Differences & AI Risks
Analyzes unique security risks in Asia's digital supply chain, highlighting challenges from regulatory disparities, interconnected ecosystems, and the rise of AI.
APT41 Deploys Stealth Backdoor for Cloud Credential Harvesting
China-linked APT41 is targeting AWS, Azure, and Google Cloud with a new zero-detection backdoor designed to harvest credentials and maintain persistence.
Advertisement
Federal Evaluators Flag Microsoft Cloud Security Documentation
U.S. federal evaluators expressed a 'lack of confidence' in Microsoft's cloud security posture due to insufficient documentation, despite approval.
Chaos Malware Variant Targets Cloud Infrastructure via SOCKS Proxy
A new variant of Chaos malware targets misconfigured cloud deployments, leveraging SOCKS proxy capabilities to expand botnet infrastructure beyond edge devices.
Snowflake Data Theft Via SaaS Integrator Breach: Mitigation
Snowflake customers face data theft due to compromised third-party SaaS integrators and stolen authentication tokens. Learn to secure integrations and detect compromise.
ComfyUI Instances Abused by Cryptomining Botnet: Mitigation
Over 1,000 internet-exposed ComfyUI instances are actively targeted by a cryptomining and proxy botnet. Secure your deployments now.
TeamPCP Supply Chain: CERT-EU Confirms Cloud Breach, 1000+ SaaS Environments Affected
CERT-EU confirms European Commission cloud breach via TeamPCP supply chain campaign. Mandiant identifies over 1,000 compromised SaaS environments.
TeamPCP Breach of European Commission Affects 30 EU Entities
CERT-EU attributes a major cloud security breach at the European Commission to threat group TeamPCP, impacting data across 30 European Union organizations.
ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, & Cloud Evasion
Analysis of the latest ThreatsDay Bulletin covering critical pre-authentication exploit chains, stealthy Android rootkits, and advanced CloudTrail evasion techniques.
TeamPCP Supply Chain Campaign: First Victim, Cloud Enumeration, Ransomware
Detailed analysis of TeamPCP supply chain campaign, covering the first confirmed victim, post-compromise cloud enumeration tactics, and dual ransomware operations.
Google Drive Ransomware Protection Enabled by Default for Workspace
Google Workspace now enables AI-powered ransomware detection by default for paying users to identify and mitigate cloud-based encryption threats automatically.
Google Vertex AI Over-Privilege: Data Theft & Cloud Intrusion Risk
Palo Alto Networks researchers found over-privileged AI agents in Google Vertex AI could be exploited for data exfiltration and access to restricted cloud infrastructure.
Vertex AI Permission Flaw Exposes Google Cloud Data — Mitigation Guide
Researchers uncover a security blind spot in Google Cloud Vertex AI, allowing attackers to weaponize AI agents for unauthorized data access and compromise.
ShinyHunters Breach: European Commission Cloud Data Theft
ShinyHunters claimed responsibility for a cyber intrusion and 350GB data theft from European Commission cloud systems. Understand the TTPs and mitigation.
RSAC 2026 Day 2: Advanced AI Automation and Cloud Security Updates
An analysis of key announcements from RSAC 2026 Day 2, focusing on AI-driven incident response, cloud security platforms, and identity-centric defense.
Trivy Supply Chain Attack Targets CI/CD Secrets in DevOps Workflows
A supply chain attack leveraged the Trivy security tool to deploy an infostealer within CI/CD pipelines, compromising cloud credentials and sensitive secrets.
TeamPCP Targets Kubernetes Clusters with Iran-Specific Wiper Malware
TeamPCP is targeting misconfigured Kubernetes clusters to deploy a data-wiping script that specifically triggers on Iranian system configurations and locales.
CanisterWorm Wiper Attacks Target Iran via Cloud Misconfigurations
Analysis of the CanisterWorm wiper targeting Iranian systems through cloud service vulnerabilities, shifting from financial extortion to destructive operations.
Beast Gang OpSec Fail: Ransomware Server Exposes TTPs
Beast Gang's OpSec failure exposes their cloud ransomware server, revealing aggressive tactics against network backups. Defenders gain insight into their TTPs.
Native Exits Stealth with $42M to Tackle Cloud Infrastructure Risks
Cloud security startup Native raises $42M to improve infrastructure resilience. Phil Venables joins the board to guide its cloud-native security strategy.