Threat Horizons

Latest Threat Horizons report from Google Cloud is out!

Insights

These are a few insights from it.

57.4% Cloud Compromises are due to weak or no credentials

You’ve got to be kidding me! It’s 2022 for Pete’s sake!

At least use STRONG password and MFA, if nothing else!

Cloud compromise factors

65% of Compromises are used for Crypto Mining

A bit surprising but it is what it is. Why compromise?

SSH, WordPress, and RDP are most targeted

Not surprized at all!

Looking at all of you peeps using same weak password to SSH into your production EC2 instances.

Predictions

The one I found most interesting was about Cloud Environments are increasingly vulnerable due to the connectedness of SSO.

Since MFA is largely ineffective & SSO is a SPOF, this is a valid concern.

And also a potential market opportunity. I shall at this point, purse my lips 😉.

In the End…

All in all, not many surprises - but the state of Security on the Cloud still is troubling & ready for drastic improvements!

Here’s to wishing y’all a more Secure & Cloudy future!