5. of Denial of Service (alternative 2022 deck)
An attacker can spend our cloud budget (budget, persist).
Threat |
|
You are using elastic compute, so the attacker creates an excessive load on the system, causing it to keep scaling until the costs for the usage exceed any cap you have put on the budget for the current month. |
|
CAPEC |
CAPEC-130 – Excessive allocation |
ASVS |
N/A |
CWE |
CWE-400 – Uncontrolled resource consumption |
Mitigations |
|
|