How Bad Cloud Security Can Expose Organizations To Cyberattacks

April 13, 2022

An increase in hybrid work has led to the rise of cloud applications and services, but careless security makes organizations vulnerable to cyberattacks.

Some of the measures that expose organizations that use cloud services include excessive permissions, poor password security (weak passwords, password re-use), and public exposure of cloud accounts.

According to a study conducted by Palo Alto Networks, 99% of cloud users, services, and resources have excessive permissions that are not needed by ordinary users. Hackers could use excess permissions to modify, create, or delete cloud environment resources. Also, it could be used to expand the scope of attacks.

53% of respondents confirmed the use of weak password security, which consists of less than 14 characters. 44% of cloud accounts allow users to reuse a password associated with another account.

Because cloud accounts are publicly exposed to the web through various misconfigurations, it makes it easier for a hacker to access details without authentication.

Security measures that organizations must take include properly configured IAM, unique passwords, and multi-factor authentication.

IT departments should also conduct the necessary investigations before granting administrator privileges to regular accounts.

The sources for this piece include an article in ZDNet.

Top Stories

Related Articles

June 15, 2025 A three-hour outage at Google Cloud on Thursday didn’t just take down Gmail, Drive, and Calendar—it exposed more...

March 26, 2025 European nations and companies are actively pursuing alternatives to U.S.-based cloud service providers, driven by concerns over more...

March 23, 2025 Google has admitted to a technical error that caused some users’ files to be accidentally and permanently more...

September 18, 2024 In a surprising turn of events, cloud giant Amazon Web Services (AWS) is now claiming that it more...

Jim Love

Jim is an author and podcast host with over 40 years in technology.

Share:
Facebook
Twitter
LinkedIn