
Crying Out Cloud #4 - Daisy Chain - A Double Supply Chain Attack
Join our lively hosts, Eden and Amitai, as they explore the most fascinating cloud security news of the month.
On this episode:
š§š More juice on 3CX supply chain attack
āļøš PaperCut vulnerabilities
š¦š Capita exposed a bucket with sensitive data for 7 years
šāļø Toyota cloud misconfiguration leaked customer data for 10 years
š¢š Trend of hijacking containers for traffic routing
Important links:
1. https://techcrunch.com/2023/05/12/toyota-japan-exposed-millions-locations-videos/
2. https://zetter.substack.com/p/updates-and-timeline-for-3cx-and
3. https://doublepulsar.com/capitas-standard-industry-practice-633gb-open-cloud-storage-5d87e7e96a70
4. https://therecord.media/iranian-state-sponsored-hackers-exploiting-printer-vulnerability
