Whether Offshore or Surface, we have it all, a lot of Server
options for various types of use!

Tenable published its report yesterday in Brazil “Tenable Cloud Risk Report 2024”a study that examines the critical risks present in cloud environments. The research was created based on the analysis of information collected from billions of cloud assets across multiple public clouds, all scanned by the Tenable Cloud Security platform. The most alarming fact is that approximately 40% of organizations worldwide are increasingly exposed due to the “cloud toxic triad” – publicly exposed, critically vulnerable and highly privileged cloud workloads. Each of these three misalignments introduces risks to data in the cloud, but the combination of the three dramatically increases the likelihood of exposure, enabling cyber attackers to gain access.
Security gaps caused by misconfigurations, dangerous rights, and vulnerabilities combine to further increase risk in the cloud. The Tenable Cloud Risk Report provides an in-depth analysis of the most pressing cloud security issues observed in the first half of 2024, highlighting areas such as identities and permissions, workloads, storage resources, vulnerabilities, containers, and Kubernetes. It also offers mitigation guidance for organizations looking for ways to limit cloud exposure.
Publicly exposed and highly privileged cloud data leads to data breaches. Critical vulnerabilities increase the likelihood of incidents. The report reveals that a staggering 38% of organizations have cloud workloads that meet all three of these cloud toxic triad criteria, representing a perfect storm of exposures for cyber attackers. When criminals exploit these loopholes, incidents often include application outages, complete system takeovers, and DDoS attacks, which are often associated with ransomware. Scenarios like these can devastate an organization, with the average cost of a single data breach in 2024 approaching $5 million.1
“As cyber exposures proliferate across the enterprise, enterprise risk has reached an unsustainable level. If before we needed to see to protect, now we need to manage to ensure.”, says Arthur Capella, General Director of Tenable Brasil. “Understanding the toxic cloud triad and other toxic combinations, including knowing which data is at risk of being breached, is essential to effectively addressing the highest priority exposures that have a high potential to cause business risk.”, he added.
Other key findings from the report include:
“Our report reveals that an overwhelming number of organizations have access exposures in their cloud workloads that they may not even be aware of,” said Shai Morag, Chief Product Officer at Tenable. “It’s not always about criminals launching new attacks. In many cases, misconfigurations and excessively privileged access pose the greatest risk of data exposure in the cloud. The good news is that many of these security holes can be easily closed once they are known and discovered.”
How to protect yourself and apply mitigation strategies
Strategies for addressing and mitigating cloud risks span an organization’s security culture, technologies, and practices. The report’s findings point to common areas of weakness and, in some cases, self-perpetuating vulnerability. The actions listed below will help organizations overcome “toxic cloud triads” and other gaps and provide cloud security from a position of advantage:
Tenable provides an actionable cloud security platform that helps companies quickly identify and close priority security gaps. Gaps in your cloud infrastructure caused by misconfigurations, risky entitlements, and vulnerabilities. Tenable’s technology helps organizations isolate and eradicate cloud exposures at scale for public, private and hybrid cloud environments, across infrastructure, workloads, identities and data, including through AI insights into access, resources and pools of data.
The report reflects the Tenable Cloud Research team’s findings based on telemetry from billions of cloud resources across multiple public cloud repositories, analyzed from January 1 to June 30, 2024.
For more detailed information about the findings, access the link to the full report at: https://pt-br.tenable.com/cyber-exposure/tenable-cloud-risk-report-2024
See the original post at: CisoAdvisor