Le Lézard
Classified in: Science and technology
Subjects: Product/Service, Survey

Orca Security ?2023 Honeypotting in the Cloud Report' Reveals Attackers Weaponize Exposed Cloud Secrets in as Little as Two Minutes


Orca Security, the pioneer of agentless cloud security, today released the results of the 2023 Honeypotting in the Cloud Report, detailing what attackers look for when scanning cloud environments and how efficient and effective they are in identifying and exploiting exposed cloud assets. The results of more than six months of research, The 2023 Honeypotting in the Cloud Report reveals that attackers typically find exposed "secrets" ? pieces of sensitive information that allow access to an enterprise cloud environment -- in as little as two minutes and, in many cases, begin exploiting them almost instantly, highlighting the urgent need for comprehensive cloud security.

Orca's research was conducted between January and May 2023, beginning with the creation of "honeypots" on nine different cloud environments that simulated misconfigured resources in the cloud to entice attackers. Each contained a secret AWS key. Next, Orca monitored each honeypot to see if and when attackers would take the bait in order to learn what cloud services are targeted most frequently, how long it takes for attackers to access public or easily accessible resources, and how long it takes for attackers to find and use leaked secrets. The research was conducted by the Orca Research Pod, a group of expert cloud security researchers that discovers and analyzes cloud risks and vulnerabilities to strengthen the Orca platform and promote cloud security best practices.

"While tactics vary per resource, our research makes one thing clear ? if a secret is exposed it will be exploited," said Bar Kaduri, Cloud Threat Research Team Lead at Orca Security. "Our research shows that attackers find exposed secrets incredibly quickly and it doesn't take them long to weaponize them. In this environment, defenders must ensure that their assets are not publicly accessible unless absolutely necessary, and that secrets are properly managed."

While Orca expected attackers to find the honeypots quickly, the research team was still surprised just how quickly some were found and exploited. Key findings of the report include;

"The differences in attacker tactics depending on resource illustrates the need for defenders to employ tailored defenses for each instance," said Tohar Braun, Research Technical Lead at Orca Security. "The 2023 Honeypotting in the Cloud Report breaks down attack techniques and includes recommended best practices for mitigating the risk of exposed secrets."

The full report is available for download here and the accompanying blog post is available on the Orca Research Pod blog. To provide further background on the research results and what this means for defenders, Bar Kaduri and Tohar Braun will be presenting their findings in an Orca Security webinar on July 12, ?Exposing Attacker Tactics Using Cloud Honeypots'.

About Orca Security

Orca Security is the pioneer of agentless cloud security that is trusted by hundreds of enterprises globally. Orca makes cloud security possible for enterprises moving to and scaling in the cloud with its patented SideScanningtm technology and Unified Data Model. The Orca Cloud Security Platform delivers the world's most comprehensive coverage and visibility of all risks across the cloud. With continuous first-to-market innovations and expertise, the Orca Platform ensures security teams quickly identify and remediate risks to keep their businesses secure. Connect your first account in minutes: https://orca.security or take the free cloud risk assessment.


These press releases may also interest you

at 21:09
On June 29, the "Gather Great Wisdom to Shape the Future of Intelligent Manufacturing?Special Exhibition on Design Intelligence and High Quality Development", hosted by the China Academy of Art (CAA), opened at the National Museum of China in...

at 20:55
Intermap Technologies ("Intermap" or the "Company"), a global leader in 3D geospatial products and intelligence solutions, announces a new financing. The Company is offering up to a maximum of 4,300,000 Class "A" common shares of the Company...

at 20:45
"The Classic Quotes by Xi Jinping," a multilingual TV show produced by China Media Group, aired in Kazakhstan on Tuesday after Chinese...

at 20:07
Ascentage Pharma (6855.HK), a global biopharmaceutical company engaged in discovering, developing and commercializing both first-in-class and best-in-class therapies for hematological malignancies, announced today that on July 2, 2024, in relation to...

at 20:05
Enterprises in Asia Pacific are moving toward software-defined networking (SDN) to make communication more secure and resilient and speed up business decision-making, according to a new research report published today by Information Services Group...

at 20:00
Atara Biotherapeutics, Inc. , a leader in T-cell immunotherapy, leveraging its novel allogeneic Epstein-Barr virus (EBV) T-cell platform to develop transformative therapies for patients with cancer and autoimmune diseases, today announced that Pascal...



News published on and distributed by: