Security News > 2025 > February > whoAMI attacks give hackers code execution on Amazon EC2 instances

2025-02-13 23:35
Security researchers discovered a name confusion attack that allows access to an Amazon Web Services account to anyone that publishes an Amazon Machine Image (AMI) with a specific name. [...]
News URL
Related news
- New ‘Rules File Backdoor’ Attack Lets Hackers Inject Malicious Code via AI Code Editors (source)
- TechRepublic EXCLUSIVE: New Ransomware Attacks are Getting More Personal as Hackers ‘Apply Psychological Pressure” (source)
- Hackers Repurpose RansomHub's EDRKillShifter in Medusa, BianLian, and Play Attacks (source)
- Chinese FamousSparrow hackers deploy upgraded malware in attacks (source)
- North Korean hackers adopt ClickFix attacks to target crypto firms (source)
- Amazon EC2 SSM Agent Flaw Patched After Privilege Escalation via Path Traversal (source)
- Hackers target SSRF bugs in EC2-hosted sites to steal AWS credentials (source)
- Russian hackers attack Western military mission using malicious drive (source)
- Cisco Webex bug lets hackers gain code execution via meeting links (source)
- Hackers Abuse Russian Bulletproof Host Proton66 for Global Attacks and Malware Delivery (source)