Tag: Cloud Security

Metabase has released security updates after confirming active exploitation of a zero day vulnerability that allows attackers to gain administrator access without authentication.
Research presented at Black Hat USA 2026 demonstrates CSS based attack techniques affecting major webmail services, highlighting risks involving passwords, authentication tokens, and AI connected email workflows.

NadMesh Botnet Targets Exposed AI Services To Steal Cloud Credentials And Kubernetes Tokens

Researchers have uncovered the NadMesh botnet targeting exposed AI services, cloud credentials, Kubernetes tokens, and administrative interfaces across internet facing systems.

Mustang Panda Uses Zoho WorkDrive To Target Indian Government And Hydropower Networks

Acronis has uncovered two cyber espionage campaigns by Mustang Panda targeting Indian government and hydropower organizations using new malware and Zoho WorkDrive as a command and control channel.

BeyondTrust Highlights Identity Security As The Foundation Of Enterprise Cyber Defense In 2026

BeyondTrust outlines why identity security, privilege management, and assume breach strategies have become essential as enterprises face growing risks from AI driven attacks, machine identities, and trusted access abuse.

Google Patches Vertex AI SDK Flaw That Enabled Model Hijacking Through Bucket Squatting

Google has patched a security flaw in the Vertex AI SDK for Python that could allow attackers to hijack machine learning model uploads through bucket squatting and execute malicious code within Google’s serving infrastructure.

Chinese Hackers Exploited Google Workspace Rules To Steal Research And Defense Emails

Google uncovers a China linked cyber espionage campaign that abused Google Workspace rules to steal sensitive research and defense emails from organizations across United States and Canada.

RedSecLabs And RapidCompute Partner To Expand Cybersecurity And Compliance Services In Pakistan

RedSecLabs and RapidCompute have announced a strategic alliance to provide cybersecurity, cloud security, and compliance focused services for enterprises and regulated industries in Pakistan.

Six Proto6 Vulnerabilities In Protobuf.js Put Node.js Applications At Risk Of RCE And DoS Attacks

Cybersecurity researchers have identified six vulnerabilities in protobuf.js that could expose Node.js applications to remote code execution and denial of service attacks, impacting cloud services, AI systems, and CI/CD pipelines.

PCPJack Hijacks 230 AWS, Google Cloud, And Azure Servers To Build Covert SMTP Relay Network

Threat actor PCPJack hijacked 230 AWS, Google Cloud, and Microsoft Azure servers to establish a covert SMTP relay network, according to Hunt.io findings.

Garaj And Alkhidmat Foundation Pakistan Partner For National Scale Cloud Migration

Garaj has welcomed Alkhidmat Foundation Pakistan to its sovereign cloud infrastructure, supporting the migration of a nationally scaled mission critical application with zero operational disruption.

Miasma Supply Chain Attack Compromises Red Hat npm Packages To Steal Credentials And Spread Self Propagating Malware

A new supply chain attack called Miasma has compromised Red Hat npm packages to steal credentials, target CI/CD environments, and deploy a self propagating malware campaign affecting developers and cloud systems.

Data Security Posture Management and the Move Toward Risk-Led Security

An in-depth analysis of Data Security Posture Management (DSPM), risk-led cyber security, access governance, AI-driven data exposure, and evolving cyber resilience strategies in Pakistan’s growing digital economy.

PwC And Google Cloud Launch AI Driven Managed Security Service For Enterprises

PwC partners with Google Cloud to introduce an AI powered managed security service using agentic workflows, targeting mid sized and smaller enterprises with unified detection and response capabilities.

Recent articles

spot_img