ZeroHour
Organization

Amazon Web Services

2 mentions in 7 days · 3 in 30 days · 3 total · first seen · last

Timeline

Simplify Threat Intelligence Procurement with SOCRadar and AWS Marketplace

SOCRadar now offers its threat intelligence platform through AWS Marketplace to streamline security teams' procurement process.

SOCRadar announced its threat intelligence platform is available for purchase through AWS Marketplace, aiming to reduce procurement delays for security teams buying external threat intelligence. The vendor positions marketplace availability as a way to shorten budgeting and approval cycles.

SOCRadar · 4d agoTools

AWS spent years rebuilding its routing control plane without taking the network down

AWS replaced its fragmented border-network routing control planes with a single unified system, improving convergence times by up to 96%.

AWS disclosed a multi-year live-network migration that consolidated independent routing control planes into one system spanning 39 regions, 123 availability zones, and 750+ points of presence. The redesign uses unidirectional route sharing, packet tunneling, and a single source of truth to eliminate routing loops and stale-path inconsistencies. AWS reports faster convergence (up to 96% improvement on some fabrics), fewer retries, and more predictable latency for services including CloudFront, Route 53, and Direct Connect.

Help Net Security · 6d agoOther

Attack Paths Into VMs in the Cloud

Unit 42 maps attack paths into AWS, Azure, and GCP VMs through intended features like startup scripts and SSH key pushes.

Palo Alto Unit 42 reviewed attack vectors against virtual machine services on AWS, Azure, and GCP, finding that 11% of internet-exposed cloud hosts carry Critical or High severity vulnerabilities. The attack paths rely on legitimate features such as EC2 User Data, VM custom data, EC2 Instance Connect, SSM Run Command, and serial consoles rather than vulnerabilities, and exploiting them requires attackers to first obtain control plane permissions. A compromised VM exposes not only its data but the workload identity and cloud permissions assigned to it, making identity compromise potentially more damaging than data theft. The firm places mitigation responsibility on cloud users and administrators.

Palo Alto Unit 42 · 29d agoResearch