CyberWire Daily
CyberWire Daily
N2K Networks
It's raining credentials. [Research Saturday]
18 minutes Posted Aug 12, 2023 at 7:00 am.
0:00
18:10
Download MP3
Show notes

Alex Delamotte from SentinelLabs joins Dave to discuss their work on "Cloudy With a Chance of Credentials | AWS-Targeting Cred Stealer Expands to Azure, GCP." As actors find more ways to profit from compromising services, SentinelLabs finds that cloud service credentials are becoming increasingly targeted.

The lack of threats explicitly targeting Azure and GCP credentials up to this point means there are likely many fresh targets. The research states "These campaigns share similarity with tools attributed to the notorious TeamTNT cryptojacking crew. However, attribution remains challenging with script-based tools, as anyone can adapt the code for their own use."

The research can be found here:

Learn more about your ad choices. Visit megaphone.fm/adchoices