Log in

goodpods headphones icon

To access all our features

Open the Goodpods app
Close icon
headphones
Crying Out Cloud

Crying Out Cloud

Wiz

Welcome to "Crying Out Cloud," the monthly podcast that keeps you up to date with the latest cloud security news. Hosted by experts Eden Naftali and Amitai Cohen, each episode provides in-depth coverage of the most important vulnerabilities and incidents from the previous month. Tune in for insightful analysis and expert recommendations to help you safeguard your cloud infrastructure.
profile image

1 Listener

Share icon

All episodes

Best episodes

Seasons

Top 10 Crying Out Cloud Episodes

Goodpods has curated a list of the 10 best Crying Out Cloud episodes, ranked by the number of listens and likes each episode have garnered from our listeners. If you are listening to Crying Out Cloud for the first time, there's no better place to start than with one of these standout episodes. If you are a fan of the show, vote for your favorite Crying Out Cloud episode by adding your comments to the episode page.

πŸŽ™οΈ NEW SPECIAL PODCAST EPISODE WITH @CHRIS HUGHES! πŸŽ™οΈ Here's a sneak peek into our chat: πŸ›‘οΈ Join Chris, Amitai, and Eden as they unveil intriguing security nuances between public and private sectors. Gain exclusive insights into FedRAMP, straight from Chris's expertise, and his take on the implications of President Biden's AI order for the cybersecurity landscape. 🌐 How exactly does SBOM adoption act as a shield against supply chain breaches? What other strategies can fortify against such attacks? πŸ” Delve into the post-COVID startup world. Chris touches on the intricacies of the challenges faced, offering a glimpse into how these innovative ventures navigate a changed landscape. Tune in for a captivating talk below!

profile image

1 Listener

bookmark
plus icon
share episode

From Supply Chain Attacks to S3 Ransomware: Critical Cloud Security Stories You Need to Know.

πŸŽ™οΈ In this episode of Crying Out Cloud, Eden and Amitai break down the latest cloud security chaos, from sneaky supply chain attacks to AI-powered malware:1) How attackers exploited a GitHub misconfiguration to enable a supply chain attack.2) The latest twist on cloud-native extortion (spoiler: it all comes back to stolen cloud keys).3) NullifAI – Malicious AI models hiding in plain sight.4) whoAMI attack – The clever AWS AMI name confusion flaw that might catch you off guard.

profile image

1 Listener

bookmark
plus icon
share episode
Crying Out Cloud - Azure DDoS, Certificate Revocations, and ESXi Ransomware
play

08/12/24 β€’ 25 min

πŸ“’ From DDoS attacks to discovering a new cryptojacking campaign, tune in to our NEW episode of #CryingOutCloud to learn about all the latest cloud security news. Join our hosts Eden and Amitai as they dive into the latest cloud security stories: * SeleniumGreed: Wiz Research discovered a new cryptojacking campaign targeting SeleniumGrid * Why your Starbucks app went down? * Internet chaos and lessons learned from DigiCert revoked certificates. * ESXi ransomware: The danger of trusting by name.

profile image

1 Listener

bookmark
plus icon
share episode

πŸŽ™οΈ All you need to know on our latest discovery #IngressNightmare 🚨In this episode of Crying Out Cloud, Amitai Cohen & Eden Koby Naftali are joined by Nir Ohfeld β€” Head of Vulnerability Research at Wiz. Nir and his team have uncovered some of the most impactful vulnerabilities affecting cloud and SaaS applications. In this episode, he's diving into the latest discovery, a critical vulnerability in Ingress-NGINX:β€’ How the team uncovered a critical unauthenticated RCE in NGINX Ingress Controllerβ€’ Why Kubernetes admission controllers might be the next big attack surfaceβ€’ The wild journey of hunting vulnerabilities in the cloud

profile image

1 Listener

bookmark
plus icon
share episode

🚨 BREAKING: Wiz Research identifies critical risks in #AI-as-a-service 🚨 Dive into Crying Out Cloud's latest episode, featuring a very special guest, Shir Tamari, head of the research team at Wiz. This episode sheds light on the security challenges that come with the rapid integration of AI technologies. Highlights include: πŸš€ Exploring the rapid integration of AI and its associated security risks, identified by Wiz Research in collaboration with Hugging Face. πŸ›‘οΈ Exposing two significant security flaws within Hugging Face's systems: shared inference and CI/CD systems, which could potentially offer unauthorized access to sensitive data. πŸ“’ Highlighting the critical need for robust security frameworks in AI services. βœ… Demonstrating Hugging Face's dedication to security through the adoption of Wiz CSPM, continuous vulnerability assessments, and annual penetration tests, thereby establishing a high standard in AI safety.

bookmark
plus icon
share episode
Crying Out Cloud - CROC News - XZ Utils backdoor explained
play

03/31/24 β€’ 12 min

The backdoor in XZ Utils is shaking the industry πŸ”” How could we not talk about it?

Tune in to the special unscheduled episode of Crying Out Cloud with Eden Naftali and Amitai Cohen as they delve into the stealthy supply chain attack!

In this episode: πŸ” The Alert from CISA regarding CVE-2024-3094, a vulnerability in XZ Utils Data Compression Library versions 5.6.0 and 5.6.1 πŸ›‘ The potential risks posed by the embedded malicious code and the unauthorized access it may grant to affected systems πŸ›‘οΈ Security Team Action Plans

Tune in now!

bookmark
plus icon
share episode
Crying Out Cloud - CROC Talks: RCE Vulnerability in Ollama explained
play

06/24/24 β€’ 10 min

πŸ’₯ EXCLUSIVE: Wiz Research uncovers CVE-2024-37032, aka #Probllama β€” a vulnerability in Ollama that that left thousands of #AI models exposed 😲

bookmark
plus icon
share episode
Crying Out Cloud - CROC News: Automotive Code Leak & Midnight Blizzard's Heist
play

02/22/24 β€’ 28 min

Loading from the Cloud... Season 2 of "CRYING OUT CLOUD" is here! Join our hosts, Eden and Amitai, as they dive into the latest cloud stories that we can't wait to share with you Here's a sneak peek into the season's opening:

πŸš— Mercedes-Benz Source Code Exposure: A public GitHub Repo was exposed - allowing unauthorized access to the company's internal servers, including AWS and Azure subscriptions. The credentials remained publicly accessible for 3-4 months. 😱

🌨️ Midnight Blizzard Hits Microsoft: Russian actors (Midnight Blizzard) got into Microsoft's network and stole employee emails, finding a misconfigured account with a weak password. Among other things, they tried to find out what Microsoft knew about their activity.

πŸ” Ivanti Vulnerabilities: Ivanti's VPN products exposed vulnerabilities, allowing remote code execution and authentication bypass, exploited by a Chinese Threat Actor.

bookmark
plus icon
share episode

Our latest episode of Crying out cloud features none other than Kat Traxler, a seasoned security professional renowned for her expertise in cloud research.πŸš€ Here's a sneak peek at what we'll cover:

πŸ” Threat modeling: Kat's practical insights

πŸ”§ "DeRF": Kat's revolutionary tool and how it can help cloud security practitioners

πŸ’‘ Dispelling myths about cloud security and how it challenges the OSI model

πŸ”¬ Future research directions in cloud security & Kat's latest projects in the field

bookmark
plus icon
share episode
Crying Out Cloud - CROC News: Malicious Repos, Bandwidth Theft, & NVD or NoVD?
play

03/26/24 β€’ 31 min

πŸŽ™οΈ What is a better way to stay updated on cloud security than a NEW Crying Out Cloud episode! Join Eden Naftali and Amitai Cohen as they explore what is new and πŸ”₯: πŸ‘Ύ Open-source repos flooded by malicious code. πŸ’» What is to become of the National Vulnerability Database? ⛓️ Proof of bandwidth cryptojacking πŸ› οΈ Critical vulnerabilities discovered in popular CI/CD tool

Links:

bookmark
plus icon
share episode

Show more best episodes

Toggle view more icon

FAQ

How many episodes does Crying Out Cloud have?

Crying Out Cloud currently has 42 episodes available.

What topics does Crying Out Cloud cover?

The podcast is about Podcasts and Technology.

What is the most popular episode on Crying Out Cloud?

The episode title 'HACKERS ARE HIJACKING CLOUD KEYS: The Rise of Cloud-Native Ransomware' is the most popular.

What is the average episode length on Crying Out Cloud?

The average episode length on Crying Out Cloud is 27 minutes.

How often are episodes of Crying Out Cloud released?

Episodes of Crying Out Cloud are typically released every 14 days, 18 hours.

When was the first episode of Crying Out Cloud?

The first episode of Crying Out Cloud was released on Mar 2, 2023.

Show more FAQ

Toggle view more icon

Comments