Ermetic Releases CNAPPgoat Open Source Project for Assessing Multi Cloud Security itbusinessnet.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from itbusinessnet.com Daily Mail and Mail on Sunday newspapers.
Multiple misconfigurations in a service that underpins many Azure features could have allowed an attacker to remotely compromise a cloud user's system.
The bug, reported to Microsoft on Oct. 26 and remediated Dec. 6, is the result of manipulating a series of misconfigurations and security bypasses in Kudu, a back-end source control management (SCM) tool that helps manage and modify web applications and is used by major Microsoft cloud services like Azure Functions, Azure App Service and Azure Logic Apps.
Microsoft moves ahead with a plan to sunset basic authentication, and other providers are moving or have moved to requiring more secure authentication as well. Is your company ready?