Security News > 2021 > October > AWS ransomware attacks: Not a question of if, but when

Ermetic announced the results of a study about the security posture of AWS environments and their vulnerability to ransomware attacks.
As more and more data moves to the cloud, platforms like AWS are becoming an attractive target for ransomware operators.
"Very few companies are aware that data stored in cloud infrastructures like AWS is at risk from ransomware attacks, so we conducted this research to investigate how often the right conditions exist for Amazon S3 buckets to be compromised," said Shai Morag, CEO of Ermetic.
Majority of AWS accounts vulnerable to ransomware attacks.
Overall, every enterprise environment studied had identities at risk of being compromised and that could perform ransomware on at least 90% of the buckets in an AWS account.
It also highlights that ransomware is not just an on-premises problem but as the pandemic has accelerated cloud migration of workloads it has also accelerated cloud migration for attackers and ransomware criminal operators," Saumitra Das, CTO, Blue Hexagon, told Help Net Security.
News URL
http://feedproxy.google.com/~r/HelpNetSecurity/~3/C3f9hDUAMhA/
Related news
- French govt contractor Atos denies Space Bears ransomware attack claims (source)
- Casio says data of 8,500 people exposed in October ransomware attack (source)
- Preventing the next ransomware attack with help from AI (source)
- Ransomware on ESXi: The mechanization of virtualized attacks (source)
- Ransomware crew abuses AWS native encryption, sets data-destruct timer for 7 days (source)
- Ransomware abuses Amazon AWS feature to encrypt S3 buckets (source)
- Attackers are encrypting AWS S3 data without using ransomware (source)
- OneBlood confirms personal data stolen in July ransomware attack (source)
- Enzo Biochem settles lawsuit over 2023 ransomware attack for $7.5M (source)
- Medusa ransomware group claims attack on UK's Gateshead Council (source)