Community Corner

PA Firm Finds Customer Misconfigurations In AWS Security: Report

The vulnerabilities exposed customers to losses in the tens of millions of dollars had they been discovered by hackers, the report said.

PALO ALTO, CA – Jeff Bezos has reason to reach for heartburn medication this week thanks to a Palo Alto cybersecurity firm’s work.

Palo Alto Networks has exposed customer misconfigurations in the mega-billionaire’s cloud empire, SDX Central reports.

The company’ Unit 42 threat hunting team found two critical cloud misconfigurations in Amazon Web Services’ cloud environment within the span of a week, according to the report.

Find out what's happening in Palo Altofor free with the latest updates from Patch.

The vulnerabilities exposed customers to losses in the tens of millions of dollars had they been discovered by hackers, the report said.

Palo Alto Networks chief security officer of public cloud Matt Chiodi initially believed the vulnerability may have been an isolated case, according to the report. Further investigation showed it to be widespread.

Find out what's happening in Palo Altofor free with the latest updates from Patch.

“We went out and did a reconnaissance operation using GitHub, and we mined that public data,” Chiodi told SDX Central.

“… we found thousands upon thousands of other accounts that were susceptible to the same type of identity misconfigurations. So we know this isn’t just an isolated problem. This is a widespread problem in the cloud.”

Read more at SDX Central

Get more local news delivered straight to your inbox. Sign up for free Patch newsletters and alerts.