#misconfiguration — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #misconfiguration, aggregated by home.social.
-
A misconfigured server tied to the carding marketplace Jerry’s Store exposed 345,000 stolen credit cards after an #AI coding error.
Read: https://hackread.com/misconfigured-server-hackers-leak-stolen-credit-cards/
#CyberSecurity #CyberCrime #DataLeak #Misconfiguration #JerrysStore
-
How Adversaries Exploit the Blind Spots in Your EASM Strategy https://hackread.com/how-adversaries-exploit-blind-spots-easm-strategy/ #Misconfiguration #Cloudsecurity #Cybersecurity #Security #Censys #Oracle #Shodan #EASM
-
Credentials and Misconfigurations Behind Most Cloud Breaches, Says AWS https://hackread.com/aws-credentials-misconfigurations-cloud-breaches/ #Misconfiguration #Cloudsecurity #Vulnerability #CyberAttack #databreach #HumanError #Security #Amazon #cloud #AWS
-
Misconfigured NetcoreCloud Server Exposed 40B Records in 13.4TB of Data https://hackread.com/misconfigured-netcorecloud-server-40-billion-records/ #Misconfiguration #JeremiahFowler #Cybersecurity #Vulnerability #NetcoreCloud #HackingNews #databreach #Security #database #Privacy #cloud #India
-
Hello Gym Data Leak Exposes 1.6 Million Audio Files of Gym Members – Source:hackread.com https://ciso2ciso.com/hello-gym-data-leak-exposes-1-6-million-audio-files-of-gym-members-sourcehackread-com/ #1CyberSecurityNewsPost #CyberSecurityNews #Misconfiguration #JeremiahFowler #CyberAttack #DataBreach #Voicemail #deepfake #Hackread #HelloGym #Phishing #security #privacy #Leaks
-
Global Fashion Label SABO’s 3.5M Customer Records Exposed Online https://hackread.com/global-fashion-label-sabo-customer-records-leaked/ #Misconfiguration #Cybersecurity #databreach #Australia #Security #database #Privacy #Fashion #Leaks #cloud #LEAKS #SABO
-
Global Fashion Label SABO’s 3.5M Customer Records Exposed Online – Source:hackread.com https://ciso2ciso.com/global-fashion-label-sabos-3-5m-customer-records-exposed-online-sourcehackread-com/ #1CyberSecurityNewsPost #CyberSecurityNews #Misconfiguration #cybersecurity #DataBreach #Australia #database #Hackread #security #Fashion #privacy #cloud #Leaks #SABO
-
Over 3.5 million customer records from Australian global fashion brand #SABO were exposed online containing over 292GB database without any security authentication or encryption.
🔗 https://hackread.com/global-fashion-label-sabo-customer-records-leaked
#CyberSecurity #Privacy #Australia #DataProtection #Misconfiguration
-
Limited Canva Creator Data Exposed Via AI Chatbot Database – Source:hackread.com https://ciso2ciso.com/limited-canva-creator-data-exposed-via-ai-chatbot-database-sourcehackread-com/ #1CyberSecurityNewsPost #CyberSecurityNews #Misconfiguration #cybersecurity #CanvaCreator #Hackread #security #Chatbot #MyDedai #privacy #Chroma #Russia #Canva #Leaks
-
Limited Canva Creator Data Exposed Via AI Chatbot Database https://hackread.com/limited-canva-creator-data-expose-ai-chatbot-database/ #Misconfiguration #Cybersecurity #CanvaCreator #Security #Privacy #Chatbot #MyDedai #Chroma #Russia #Leaks #Canva #LEAKS
-
So, you accidentally summoned an army of LLM bots to devour your server resources and send your finances into a death spiral? 🤖💸 Who would've thought that a simple 'misconfiguration' could make your bank account the real ghost in the machine? 🎭💀
https://metacast.app/blog/engineering/postmortem-llm-bots-image-optimization #LLMBots #Misconfiguration #ServerResources #GhostInTheMachine #FinancesFail #HackerNews #ngated -
Propertyrec Leak Exposes Over Half a Million Background Check Records – Source:hackread.com https://ciso2ciso.com/propertyrec-leak-exposes-over-half-a-million-background-check-records-sourcehackread-com/ #1CyberSecurityNewsPost #CyberSecurityNews #BackgroundChecks #Misconfiguration #cybersecurity #database #Hackread #security #privacy #breach #cloud #Leaks
-
Strategies for CISOs navigating hybrid and multi-cloud security https://www.helpnetsecurity.com/2024/11/11/alex-freedland-mirantis-cisos-cloud-security/ #misconfiguration #cloudsecurity #cybersecurity #compliance #regulation #Don'tmiss #Features #Hotstuff #Mirantis #opinion #News #CISO #tips
-
Linux systems targeted with stealthy “Perfctl” cryptomining malware https://www.helpnetsecurity.com/2024/10/07/perfctl-perfcc-cryptomining-linux/ #misconfiguration #cryptojacking #vulnerability #AquaSecurity #Don'tmiss #Hotstuff #rootkits #malware #Linux #News
-
Millions of US Voter Data Exposed in 13 Misconfigured Databases https://hackread.com/millions-us-voter-data-exposed-misconfigured-databases/ #Misconfiguration #Cybersecurity #databreach #VoterData #Security #Illinois #security #Privacy #Leaks #US
-
Building a strong cloud security posture https://www.helpnetsecurity.com/2024/05/01/building-cloud-security-posture-video/ #misconfiguration #securitycontrols #cloudsecurity #cybersecurity #Don'tmiss #Hotstuff #Cymulate #strategy #policy #Video #video #tips
-
𝗛𝗼𝘄 𝘁𝗼 𝘀𝗲𝗰𝘂𝗿𝗲 𝗮 𝗙𝘂𝗻𝗰𝘁𝗶𝗼𝗻 𝗔𝗽𝗽?
𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚘̲𝚙̲𝚎̲𝚛̲𝚊̲𝚝̲𝚒̲𝚘̲𝚗̲
➡️Defender for Cloud for assessment of potential configuration-related security vulnerabilities
➡️Log and monitor: diagnostic settings to configure streaming export of platform logs and metrics
➡️Require HTTPS
➡️Securing keys with Azure key Vault
➡️Enable App Service Authentication/Authorization
➡️Use Azure API Management (APIM) to authenticate requests
➡️Run your function app with the lowest possible permissions
➡️Store data encrypted
𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚍̲𝚎̲𝚙̲𝚕̲𝚘̲𝚢̲𝚖̲𝚎̲𝚗̲𝚝̲
➡️Disable FTP
➡️Secure the scm endpoint
𝙽̲𝚎̲𝚝̲𝚠̲𝚘̲𝚛̲𝚔̲ ̲𝚜̲𝚎̲𝚌̲𝚞̲𝚛̲𝚒̲𝚝̲𝚢̲
➡️Set access restrictions
➡️Secure the storage account
➡️Private site access with Azure Private Endpoint
➡️Deploy your function app in isolation configuring a Web Application Firewall (WAF) for App Service Environment.
More details: https://learn.microsoft.com/en-us/azure/azure-functions/security-concepts?tabs=v4
#security #azure #cloud #data #management #streaming #functionapp #serverless #waf #appservice #privateendpoint #networksecurity #securedeployment #apim #ftp #keyvault #key #vulnerability #assessment #misconfiguration #encryption #storage #storageaccount #defender #defenderforcloud #cnapp #cspm #cwpp #microsoft #microsoftsecurity #cloudsecurity #cloudnative #siem #monitoring #soc
-
𝗛𝗼𝘄 𝘁𝗼 𝘀𝗲𝗰𝘂𝗿𝗲 𝗮 𝗙𝘂𝗻𝗰𝘁𝗶𝗼𝗻 𝗔𝗽𝗽?
𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚘̲𝚙̲𝚎̲𝚛̲𝚊̲𝚝̲𝚒̲𝚘̲𝚗̲
➡️Defender for Cloud for assessment of potential configuration-related security vulnerabilities
➡️Log and monitor: diagnostic settings to configure streaming export of platform logs and metrics
➡️Require HTTPS
➡️Securing keys with Azure key Vault
➡️Enable App Service Authentication/Authorization
➡️Use Azure API Management (APIM) to authenticate requests
➡️Run your function app with the lowest possible permissions
➡️Store data encrypted
𝚂̲𝚎̲𝚌̲𝚞̲𝚛̲𝚎̲ ̲𝚍̲𝚎̲𝚙̲𝚕̲𝚘̲𝚢̲𝚖̲𝚎̲𝚗̲𝚝̲
➡️Disable FTP
➡️Secure the scm endpoint
𝙽̲𝚎̲𝚝̲𝚠̲𝚘̲𝚛̲𝚔̲ ̲𝚜̲𝚎̲𝚌̲𝚞̲𝚛̲𝚒̲𝚝̲𝚢̲
➡️Set access restrictions
➡️Secure the storage account
➡️Private site access with Azure Private Endpoint
➡️Deploy your function app in isolation configuring a Web Application Firewall (WAF) for App Service Environment.
More details: https://learn.microsoft.com/en-us/azure/azure-functions/security-concepts?tabs=v4
#security #azure #cloud #data #management #streaming #functionapp #serverless #waf #appservice #privateendpoint #networksecurity #securedeployment #apim #ftp #keyvault #key #vulnerability #assessment #misconfiguration #encryption #storage #storageaccount #defender #defenderforcloud #cnapp #cspm #cwpp #microsoft #microsoftsecurity #cloudsecurity #cloudnative #siem #monitoring #soc
-
Bugged - I have just completed this room! Check it out: https://tryhackme.com/room/bugged #tryhackme #network protocols #IoT #misconfiguration #command execution #bugged via @RealTryHackMe
-
Bugged - I have just completed this room! Check it out: https://tryhackme.com/room/bugged #tryhackme #network protocols #IoT #misconfiguration #command execution #bugged via @RealTryHackMe
-
Another Stablecoin Depegs From USD Parity, Polkadot-Based AUSD Loses 98% in Value
https://news.bitcoin.com/another-stablecoin-depegs-from-usd-parity-polkadot-based-ausd-loses-98-in-value/
#Polkadot-basedstablecoin #Misconfiguration #1.2billionAUSD #Honzonprotocol #ACALAprotocol #iBTC/AUSDpool #AcalaNetwork #losingparity #Stablecoins #Stablecoin #depegging #USDparity #$0.01165 #Polkadot #depeg #News #AUSD #USDC #USDN #USDT #USTC #DAI #MIM #UST