Advisor
Wiki Threats & Attacks Cloud Attacks

Cloud Attacks 18 articles

01
Cloud Account Takeover (CATO)
Summary Cloud Account Takeover (CATO) is a type of application attack where adversaries gain unauthorized access to cloud service accounts, enabling them to manipulate data, disrupt services, or launch further…
02
Cloud Credential Compromise
Summary Cloud Credential Compromise is a type of application attack where an adversary gains unauthorized access to cloud service accounts by stealing or exploiting user credentials. This attack enables attackers…
03
Cloud Logging & Monitoring Evasion
Summary Cloud Logging & Monitoring Evasion is a technique used by attackers to bypass or disable cloud-based logging and monitoring systems, preventing detection of malicious activities within cloud environments. This…
04
Cloud Metadata Service Abuse
Summary Cloud Metadata Service Abuse is an application-level attack where adversaries exploit cloud instance metadata services to gain unauthorized access to sensitive information such as credentials, tokens, and configuration details,…
05
Cloud Misconfiguration Abuse
Summary Cloud Misconfiguration Abuse is an attack that exploits improperly configured cloud services, allowing attackers to gain unauthorized access, escalate privileges, or exfiltrate sensitive data. This attack targets weaknesses in…
06
Cloud Network Misconfiguration Attacks
Summary Cloud Network Misconfiguration Attacks exploit improperly configured cloud network settings to gain unauthorized access, disrupt services, or exfiltrate data within cloud environments. These attacks leverage vulnerabilities such as open…
07
Cloud Resource Hijacking (Crypto Mining)
Summary Cloud Resource Hijacking (Crypto Mining) is a cyberattack where adversaries exploit compromised cloud infrastructure to mine cryptocurrencies without authorization, leading to resource depletion, increased costs, and degraded performance for…
08
Cloud Supply Chain Attacks
Summary Cloud Supply Chain Attacks involve compromising cloud service providers, third-party vendors, or software dependencies to infiltrate target organizations, often resulting in widespread impact across multiple customers and services. Key…
09
Container Escape Attacks
Summary Container Escape Attacks are security threats where an attacker breaks out of a containerized environment to gain unauthorized access to the host system or other containers, compromising the isolation…
10
Cross-Tenant Attacks
Summary Cross-Tenant Attacks involve malicious activities where an attacker exploits vulnerabilities to gain unauthorized access or disrupt services across multiple tenants within a shared cloud or multi-tenant environment. These attacks…
11
IAM Privilege Escalation in Cloud
Summary IAM Privilege Escalation in Cloud is a type of attack where adversaries exploit misconfigurations or vulnerabilities in Identity and Access Management (IAM) policies to gain unauthorized elevated permissions within…
12
Insecure Backup & Snapshot Exposure
Summary Insecure Backup & Snapshot Exposure refers to the vulnerability where backups or snapshots of data are improperly secured, allowing unauthorized access to sensitive information. Attackers exploit these exposed backups…
13
Insecure Cloud APIs
Summary Insecure Cloud APIs refer to vulnerabilities in cloud service application programming interfaces that allow attackers to exploit weaknesses, leading to unauthorized access, data breaches, and service disruptions. These APIs…
14
Kubernetes API Abuse
Summary Kubernetes API Abuse is a type of application attack where adversaries exploit vulnerabilities or misconfigurations in the Kubernetes API server to gain unauthorized access, escalate privileges, or disrupt cluster…
15
Object Storage Data Exposure
Summary Object Storage Data Exposure is a security vulnerability where sensitive data stored in object storage systems is unintentionally accessible to unauthorized users due to misconfigurations or weak access controls.…
16
SaaS Data Exfiltration Attacks
Summary SaaS Data Exfiltration Attacks involve unauthorized extraction of sensitive data from Software-as-a-Service (SaaS) applications by exploiting vulnerabilities or misconfigurations. These attacks target cloud-based services to steal confidential information, intellectual…
17
Serverless Function Abuse
Summary Serverless Function Abuse is a type of application attack where adversaries exploit serverless computing environments by injecting malicious code or manipulating functions to gain unauthorized access, execute arbitrary code,…
18
Shadow Cloud / Unsanctioned Services Abuse
Summary Shadow Cloud, also known as Unsanctioned Services Abuse, refers to the unauthorized use of cloud services or applications within an organization’s environment. This attack exploits unsanctioned or shadow IT…