
Crying Out Cloud
Wiz

1 Listener
All episodes
Best episodes
Seasons
Top 10 Crying Out Cloud Episodes
Goodpods has curated a list of the 10 best Crying Out Cloud episodes, ranked by the number of listens and likes each episode have garnered from our listeners. If you are listening to Crying Out Cloud for the first time, there's no better place to start than with one of these standout episodes. If you are a fan of the show, vote for your favorite Crying Out Cloud episode by adding your comments to the episode page.

#14 - On Executive Orders And AI (Special Guest - Chris Hughes)
Crying Out Cloud
12/10/23 β’ 34 min
ποΈ NEW SPECIAL PODCAST EPISODE WITH @CHRIS HUGHES! ποΈ Here's a sneak peek into our chat: π‘οΈ Join Chris, Amitai, and Eden as they unveil intriguing security nuances between public and private sectors. Gain exclusive insights into FedRAMP, straight from Chris's expertise, and his take on the implications of President Biden's AI order for the cybersecurity landscape. π How exactly does SBOM adoption act as a shield against supply chain breaches? What other strategies can fortify against such attacks? π Delve into the post-COVID startup world. Chris touches on the intricacies of the challenges faced, offering a glimpse into how these innovative ventures navigate a changed landscape. Tune in for a captivating talk below!

1 Listener

02/21/25 β’ 23 min
From Supply Chain Attacks to S3 Ransomware: Critical Cloud Security Stories You Need to Know.
ποΈ In this episode of Crying Out Cloud, Eden and Amitai break down the latest cloud security chaos, from sneaky supply chain attacks to AI-powered malware:1) How attackers exploited a GitHub misconfiguration to enable a supply chain attack.2) The latest twist on cloud-native extortion (spoiler: it all comes back to stolen cloud keys).3) NullifAI β Malicious AI models hiding in plain sight.4) whoAMI attack β The clever AWS AMI name confusion flaw that might catch you off guard.

1 Listener

Azure DDoS, Certificate Revocations, and ESXi Ransomware
Crying Out Cloud
08/12/24 β’ 25 min
π’ From DDoS attacks to discovering a new cryptojacking campaign, tune in to our NEW episode of #CryingOutCloud to learn about all the latest cloud security news. Join our hosts Eden and Amitai as they dive into the latest cloud security stories: * SeleniumGreed: Wiz Research discovered a new cryptojacking campaign targeting SeleniumGrid * Why your Starbucks app went down? * Internet chaos and lessons learned from DigiCert revoked certificates. * ESXi ransomware: The danger of trusting by name.

1 Listener

03/25/25 β’ 22 min
ποΈ All you need to know on our latest discovery #IngressNightmare π¨In this episode of Crying Out Cloud, Amitai Cohen & Eden Koby Naftali are joined by Nir Ohfeld β Head of Vulnerability Research at Wiz. Nir and his team have uncovered some of the most impactful vulnerabilities affecting cloud and SaaS applications. In this episode, he's diving into the latest discovery, a critical vulnerability in Ingress-NGINX:β’ How the team uncovered a critical unauthenticated RCE in NGINX Ingress Controllerβ’ Why Kubernetes admission controllers might be the next big attack surfaceβ’ The wild journey of hunting vulnerabilities in the cloud

1 Listener

04/04/24 β’ 11 min
π¨ BREAKING: Wiz Research identifies critical risks in #AI-as-a-service π¨ Dive into Crying Out Cloud's latest episode, featuring a very special guest, Shir Tamari, head of the research team at Wiz. This episode sheds light on the security challenges that come with the rapid integration of AI technologies. Highlights include: π Exploring the rapid integration of AI and its associated security risks, identified by Wiz Research in collaboration with Hugging Face. π‘οΈ Exposing two significant security flaws within Hugging Face's systems: shared inference and CI/CD systems, which could potentially offer unauthorized access to sensitive data. π’ Highlighting the critical need for robust security frameworks in AI services. β Demonstrating Hugging Face's dedication to security through the adoption of Wiz CSPM, continuous vulnerability assessments, and annual penetration tests, thereby establishing a high standard in AI safety.

CROC News - XZ Utils backdoor explained
Crying Out Cloud
03/31/24 β’ 12 min
The backdoor in XZ Utils is shaking the industry π How could we not talk about it?
Tune in to the special unscheduled episode of Crying Out Cloud with Eden Naftali and Amitai Cohen as they delve into the stealthy supply chain attack!
In this episode: π The Alert from CISA regarding CVE-2024-3094, a vulnerability in XZ Utils Data Compression Library versions 5.6.0 and 5.6.1 π The potential risks posed by the embedded malicious code and the unauthorized access it may grant to affected systems π‘οΈ Security Team Action Plans
Tune in now!

CROC Talks: RCE Vulnerability in Ollama explained
Crying Out Cloud
06/24/24 β’ 10 min
π₯ EXCLUSIVE: Wiz Research uncovers CVE-2024-37032, aka #Probllama β a vulnerability in Ollama that that left thousands of #AI models exposed π²

CROC News: Automotive Code Leak & Midnight Blizzard's Heist
Crying Out Cloud
02/22/24 β’ 28 min
Loading from the Cloud... Season 2 of "CRYING OUT CLOUD" is here! Join our hosts, Eden and Amitai, as they dive into the latest cloud stories that we can't wait to share with you Here's a sneak peek into the season's opening:
π Mercedes-Benz Source Code Exposure: A public GitHub Repo was exposed - allowing unauthorized access to the company's internal servers, including AWS and Azure subscriptions. The credentials remained publicly accessible for 3-4 months. π±
π¨οΈ Midnight Blizzard Hits Microsoft: Russian actors (Midnight Blizzard) got into Microsoft's network and stole employee emails, finding a misconfigured account with a weak password. Among other things, they tried to find out what Microsoft knew about their activity.
π Ivanti Vulnerabilities: Ivanti's VPN products exposed vulnerabilities, allowing remote code execution and authentication bypass, exploited by a Chinese Threat Actor.

CROC Talks - Threat Models, Cloud Tools, and Security Tales - Special Guest: Kat Traxler
Crying Out Cloud
05/09/24 β’ 34 min
Our latest episode of Crying out cloud features none other than Kat Traxler, a seasoned security professional renowned for her expertise in cloud research.π Here's a sneak peek at what we'll cover:
π Threat modeling: Kat's practical insights
π§ "DeRF": Kat's revolutionary tool and how it can help cloud security practitioners
π‘ Dispelling myths about cloud security and how it challenges the OSI model
π¬ Future research directions in cloud security & Kat's latest projects in the field

CROC News: Malicious Repos, Bandwidth Theft, & NVD or NoVD?
Crying Out Cloud
03/26/24 β’ 31 min
ποΈ What is a better way to stay updated on cloud security than a NEW Crying Out Cloud episode! Join Eden Naftali and Amitai Cohen as they explore what is new and π₯: πΎ Open-source repos flooded by malicious code. π» What is to become of the National Vulnerability Database? βοΈ Proof of bandwidth cryptojacking π οΈ Critical vulnerabilities discovered in popular CI/CD tool
Links:
- https://apiiro.com/blog/malicious-code-campaign-github-repo-confusion-attack/
- https://github.blog/2024-02-29-keeping-secrets-out-of-public-repositories/
- https://research.openanalysis.net/github/lua/2024/03/03/lua-malware.html
- https://resilientcyber.substack.com/p/death-knell-of-the-nvd
- https://sysdig.com/blog/cloud-threats-deploying-crypto-cdn/
Show more best episodes

Show more best episodes
FAQ
How many episodes does Crying Out Cloud have?
Crying Out Cloud currently has 42 episodes available.
What topics does Crying Out Cloud cover?
The podcast is about Podcasts and Technology.
What is the most popular episode on Crying Out Cloud?
The episode title 'HACKERS ARE HIJACKING CLOUD KEYS: The Rise of Cloud-Native Ransomware' is the most popular.
What is the average episode length on Crying Out Cloud?
The average episode length on Crying Out Cloud is 27 minutes.
How often are episodes of Crying Out Cloud released?
Episodes of Crying Out Cloud are typically released every 14 days, 18 hours.
When was the first episode of Crying Out Cloud?
The first episode of Crying Out Cloud was released on Mar 2, 2023.
Show more FAQ

Show more FAQ