Field Notes

AI powered attackers went zero-to-AWS-admin in 8 minutes

AI powered attackers went zero-to-AWS-admin in 8 minutes

AI powered attackers went zero-to-AWS-admin in 8 minutes. It wasn't a nation-state, just an opportunistic attacker who found a misconfigured S3 bucket that contained other credentials they used to chain identities. It gave them a running system backdoor in less time than it takes to dig through your morning Slack backlog.

Conor Sherman and I dig into this threat research from Sysdig and much more on the newest episode of Threats, Pitfalls and Risk Myths, the TPRM Podcast.

This is no longer a nation-state capability. The cost of a successful attack is hitting the floor.

We talk about how this new reality breaks the SOC model, autonomous defense and much more in this latest episode.

Link in comments!