Skip to Main Content
blog
nav-menu
blog-aws-ses-pionage-detecting-ses-abuse
Research
Nathan Avatar

Nathan Eades

12 Jan 2023

SES-pionage

What do attackers do with exposed AWS access keys? We look inside AWS SES to give deeper insights into the service, why & how its targeted and how to detect it.

READ MORE

blog-cloud-cred-harvesting-campaign-grinch
Research
Ian

Ian Ahl

29 Dec 2022

Cloud Cred Harvesting Campaign - Grinch Edition

The Grinch targets Jupyter this Christmas with a cloud cred harvesting campaign.

READ MORE

blog-aws-logging-enhancement-card
Research
Nathan Avatar
Ian

Nathan Eades & Ian Ahl

25 Oct 2022

AWS Enhancements to UpdateLoginProfile and CreateLoginProfile logging

Logging by cloud providers and identity providers sometimes does not contain the level of detail needed for detections. We found a case in AWS when a login profile is created or updated without the reset password flag set to true.

READ MORE

blog-password-spray-enters-okta-gon
Research
Ian

Ian Ahl

16 Sep 2022

Password spray enters the Okta-gon

Identity Providers (IDPs), like Okta have always been a juicy target for threat actors of all skill levels. Permiso identified a large Okta password spraying campaign that took place in late August.

READ MORE

paginate first page
previous page
123
next page
paginate last page

Search

Choose Category

Company
Product
Research
News