IR in the cloud
As we've already learned, an incident is a service disruption that impacts your customers and end users, regardless of where this is—be it a mobile device or the cloud! We've also learned that incidents can come in many different forms, ranging from performance slowdowns to system crashes or difficulties reaching your server or service!
When we look at the top cloud threats, you will notice the list is similar to the non-cloud theaters, since the cloud is, in reality, a data center that is managed by the cloud provider and your organization, depending of the service you are getting.
- Public Secrets: Leaving secrets in open repositories like GitHub.
- Misconfiguration: Similar to on-premises, not using the right settings might get your data exposed.
- Exposed End Points: Open to brute-force attacks.
- Account Hijacking: Since identity is the new permitter, getting your account hijacked will give your access to the threat actors...