Tag

#cloud-security

128 stories taggedcloud-security · page 4 of 9.

Microsoft cloud service icons (SharePoint, Teams, Edge) arranged on a server, with hidden malware threads running through the environment, visualized as invisib
Threat Intelligence

TWINLOOT Malware Hides Inside Microsoft's Own Cloud to Steal Passwords

A newly discovered piece of malicious software uses Microsoft SharePoint, Teams, and Edge to run its operation, making it nearly invisible to the tools most companies rely on.

4 min read
A cloud storage platform interface with financial documents and personal identification information visible, with security breach indicators and exposed data st
Breaches

Heights Finance Data Breach Hits 1.2 Million Borrowers

A consumer lender's cloud storage platform was broken into, exposing Social Security numbers, bank account details and driver's licence numbers for more than 1.2 million past and present customers.

3 min read
A Slack workspace with multiple message threads displayed, showing panicked exchanges and blame-shifting conversations, with legal document and subpoena icons l
Opinion

Your Team's Slack Messages During a Breach Could Cost More Than the Breach Itself

The panicked notes, the finger-pointing threads, the 'we knew about this' one-liners: what your staff types in the first 24 hours of a cyber incident can become courtroom evidence. Here is why that matters, and what to do before the subpoena arrives.

4 min read
Gmail and Google Drive interface open on a computer screen with access granted through stolen OAuth tokens, showing unauthorized file access and email reading w
Cloud Security

OAuth Tokens Are Quietly Becoming the Skeleton Key to Google Workspace

Phishing gets the headlines, but stolen app tokens can open Gmail and Drive without ever tripping a login alert.

4 min read
An office building at dusk with windows lit from within, a laptop on a nearby desk displaying exposed database files, representing the moment when exposed crede
Cloud Security

A Leaked Password Let Hackers Drain the Donor Databases of More Than 1,000 UK Charities

Beacon, a software company that helps charities manage their supporters, left an access key exposed in public code. Criminals found it, used it, and likely walked off with every record in the system.

3 min read
A security analyst's workstation displaying attack traffic logs and map software vulnerability alerts in real-time, network packets visible crossing between sys
Vulnerabilities

Hackers Are Already Probing a Dangerous, Unpatched Flaw in GeoServer

A newly public security hole in popular mapping software drew hundreds of attack attempts within hours. No fix exists yet.

3 min read
Government office buildings in Bogotá with police and emergency vehicles outside, while a computer screen inside shows encrypted files and ransomware lock messa
Ransomware

Ransomware Hit Colombia's Justice Ministry Five Days Before a New President Took Office

Files were encrypted, services went down, and ColCERT had warned about exactly this kind of attack the day before. What happened, and why Colombia keeps ending up in the crosshairs.

4 min read
A hacker's workstation with multiple browser windows and database query tools open, showing corporate data being copied and transferred, dim lighting and focus
Threat Intelligence

Hackers Used Guest Access to Quietly Steal Data From Salesforce and ServiceNow

A newly spotted campaign, tracked as 'City-Forum', used anonymous login features built into two widely used business platforms to map and copy out sensitive data, no stolen password required.

3 min read
A developer's IDE showing AI agent integration code, with researchers examining the wrapper functions and API connections, code highlighting revealing exploitab
AI Security

The software wrapper around your AI agent is the real security risk

Researchers broke into official AI automation tools from Anthropic, Google, and OpenAI, not by tricking the AI itself, but by exploiting the ordinary code that connects it to the real world.

5 min read
A laboratory workspace with specialized AI processor chips on examination trays under bright task lighting, a researcher in glasses examining circuit architectu
AI Security

A New Security Startup Says AI Chips Have a Blind Spot. It Wants to Fix That.

Stealthium is building tools to spot attacks hiding inside the specialised computer chips that power artificial intelligence, a corner of corporate IT that most security software cannot see.

3 min read
A security operations center where analysts are tracking millions of spoofed login attempts on large dashboard displays, threat intelligence feeds scrolling acr
Identity & Access

Four Million Fake App IDs, One Blind Spot: How Hackers Are Slipping Past Microsoft Login Defences

Two criminal campaigns sent over four million spoofed application identities at Microsoft's sign-in system and barely triggered an alert. Here is what happened, who is at risk, and what security teams can do.

5 min read
A sprawling network of interconnected open-source code repositories and libraries visible in a constellation of glowing nodes, with security cracks forming betw
Opinion

Open source grew up in a hurry, and the security bill is coming due

The world runs on free code written by strangers. That model is finally hitting its limits, and everyone using cloud services is exposed.

4 min read
A developer's workstation screen showing lines of code being examined under a magnifying glass, with warning symbols floating in the digital space around it, re
AI Security

Criminals Poisoned a Python Package Downloaded 95 Million Times a Month. AI Developers Were the Target.

On 24 March 2026, attackers slipped malicious code into LiteLLM, a software tool used by AI developers worldwide. Three hours online was enough to reach tens of thousands of companies.

4 min read
A collection of device screens—laptop, tablet, smartphone—each displaying a security patch notification downloading simultaneously, with progress bars advancing
Vulnerabilities

Microsoft and Apple Rush Out Patches for Flaws That Let Attackers In Without a Password

Several of the Microsoft bugs score a perfect 10 out of 10 for severity. Apple quietly fixed a flaw that lets someone access your screen without logging in.

3 min read
A graph showing an upward trend line spiking dramatically, with visual representations of money and compromised data swirling around it, depicting the escalatin
AI Security

AI Is Making Data Breaches More Expensive. Here's What the Numbers Actually Say.

IBM's 2026 Cost of a Data Breach report puts the average global figure at $6 million, up 35% on last year, with one in four malicious incidents now involving AI-powered techniques.

4 min read
© 2026 Threat Vectr