#aws


Hackers target exposed Vite dev servers to steal AWS, Azure secrets

Sep 14, 2026 // 19:16

A mass-scanning campaign targeting internet-exposed Vite development servers is attempting to steal cloud credentials and configurations from AWS and Azure deployments. The operation leverages an […]

Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials

Sep 5, 2026 // 20:02

JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors exploited a recently […]

Critical Langflow flaw exploited to steal OpenAI and AWS keys

Sep 1, 2026 // 23:37

Threat actors are exploiting an unauthenticated remote code execution vulnerability (CVE-2026-0768) in Langflow, an open-source framework for building AI applications, to steal credentials, tokens, and […]

Hundreds of leaked AWS keys give full control over corporate accounts

Aug 21, 2026 // 19:18

More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. Truffle Security has […]

Hundreds of leaked AWS keys give full control over corporate accounts

Aug 21, 2026 // 18:57

More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. Truffle Security has […]

AWS, Google, and Vercel Patch Agent Flaws That Let Tool Calls Skip the Model

Aug 6, 2026 // 11:58

Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent’s tools with no check […]

AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code

Jul 21, 2026 // 19:10

Hidden text on a web page was enough to make Kiro, AWS’s agentic coding IDE, rewrite its own configuration file and run an attacker’s code […]

PCPJack Hijacks 230 AWS, Google Cloud, and Azure Servers for Covert SMTP Relay Network

Jun 5, 2026 // 08:36

The threat actor known as PCPJack has hijacked cloud servers associated with Amazon Web Services (AWS), Google Cloud, and Microsoft Azure to create a covert […]

AWS Bedrock Vulnerabilities: 8 Attack Vectors & Potential Damage.

Mar 23, 2026 // 15:13

Amazon Bedrock is Amazon’s service for creating AI applications. It provides developers with access to foundational AI models and tools to link them to company […]

How UNC6426 Went from nx npm Malware to AWS Admin in 72 Hours

Mar 11, 2026 // 12:40

In its Cloud Threat Horizons Report (H1 2026), Google identified the threat actor UNC6426 as the group responsible for a swift breach of a victim’s cloud environment. The […]

1 2 Next