ZCyberNews
中文

#cloud-security

14 articles

Over the 25 articles published between April 13 and May 7, 2026, cloud-security coverage focused on activity from APT41 and PCPJack, with five key CVEs including CVE-2026-33413 (CVSS 8.8), CVE-2025-29927, CVE-2025-48703, CVE-2025-55182, and CVE-2025-9501. The 16 high, 3 informational, and 2 critical severity reports spanned the technology, government, healthcare, cloud-services, and financial services sectors, with impacts observed globally across the EU, Israel, and North America.

PCPJack Worm Steals Cloud Credentials, Wipes TeamPCP InfectionsHIGH
Malware

PCPJack Worm Steals Cloud Credentials, Wipes TeamPCP Infections

SentinelLabs uncovers PCPJack, a credential-stealing worm targeting Docker, Kubernetes, Redis, and MongoDB that actively removes rival TeamPCP access from compromised cloud...

CVE-2025-29927CVE-2025-55182CVE-2026-1357+2
4 min readPCPJack
Persistent OAuth Tokens: The Back Door Attackers ExploitHIGH
Industry News

Persistent OAuth Tokens: The Back Door Attackers Exploit

OAuth tokens with no expiration persist in Google and Microsoft tenants — attackers bypass MFA and perimeter controls.

3 min read
AI Agents Wreck Production Databases Due to Poor Access ControlsHIGH
Industry News

AI Agents Wreck Production Databases Due to Poor Access Controls

Dark Reading reports AI agents are deleting production databases because organizations deploy agent integrations without proper security testing or access controls.

2 min read
Vercel Breach via Context.ai OAuth Token TheftHIGH
Industry News

Vercel Breach via Context.ai OAuth Token Theft

Vercel disclosed a breach after stolen OAuth tokens from Context.ai enabled unauthorized access to internal systems via a connected app. No customer data exposed.

2 min read
ESET: Cloud VMs Expose Critical Security Gaps in EnterpriseHIGH
Industry News

ESET: Cloud VMs Expose Critical Security Gaps in Enterprise

ESET warns that misconfigured cloud VMs—overprivileged IAM roles, exposed management ports, and unpatched OS images—create systemic security gaps across enterprise environments.

2 min read
Copperhelm Raises $7M for Agentic Cloud Security Platform
Industry News

Copperhelm Raises $7M for Agentic Cloud Security Platform

Copperhelm, an Israel-based startup founded by ex-RSA and McAfee engineers, raised $7 million in seed funding for an agentic AI platform that autonomously hunts cloud…

2 min read
Palo Alto Networks Zealot AI Agent Autonomously Hacks Cloud SystemsHIGH
Tools & Techniques

Palo Alto Networks Zealot AI Agent Autonomously Hacks Cloud Systems

Palo Alto Networks researchers built Zealot, a multi-agent AI penetration testing PoC that autonomously performs reconnaissance, exploitation, and data exfiltration on cloud…

2 min read
Vercel Breach Exposes Customer Credentials via Compromised AI ToolHIGH
Threat Intel

Vercel Breach Exposes Customer Credentials via Compromised AI Tool

Vercel confirms a breach exposing limited customer credentials after attackers compromised an employee's account via a third-party AI tool, Context.ai. The cloud platform is resetting passwords and API tokens for affected users.

3 min read
Cloud Security Alliance Warns of AI Vulnerability Storm Post-MythosHIGH
AI Security

Cloud Security Alliance Warns of AI Vulnerability Storm Post-Mythos

The Cloud Security Alliance warns that Anthropic's Claude Mythos model will trigger an 'AI vulnerability storm,' forcing CISOs to manage a 10x surge in code flaws and novel exploit techniques within 18 months.

3 min read
Vercel Confirms Data Breach After Hackers Attempt to Sell Stolen InformationHIGH
Threat Intel

Vercel Confirms Data Breach After Hackers Attempt to Sell Stolen Information

Vercel disclosed a security breach after threat actors attempted to sell stolen data, including customer account information and internal project details, on a hacking forum. The cloud platform is investigating the scope of the incident.

2 min read
Unmanaged Non-Human Identities Fuel Majority of Cloud BreachesHIGH
Industry News

Unmanaged Non-Human Identities Fuel Majority of Cloud Breaches

A 2024 analysis reveals 68% of cloud breaches stem from compromised, orphaned non-human identities like service accounts and API keys, not phishing or weak passwords, highlighting a critical gap in automated credential lifecycle management.

4 min read
Threat Actors Abuse Google Cloud Storage to Evade Filters, Deliver Remcos RATHIGH
Threat Intel

Threat Actors Abuse Google Cloud Storage to Evade Filters, Deliver Remcos RAT

Cybercriminals are hosting phishing pages on Google Cloud Storage to bypass email security and reputation checks, delivering the Remcos remote access trojan in campaigns observed since early 2026.

4 min read
Critical etcd Authentication Bypass Exposes Kubernetes Cluster SecretsCRITICAL
Vulnerabilities

Critical etcd Authentication Bypass Exposes Kubernetes Cluster Secrets

A critical authentication bypass flaw in etcd, CVE-2026-33413 (CVSS 8.8), allows unauthorized access to sensitive cluster APIs, potentially exposing secrets and configurations in Kubernetes and cloud-native environments.

CVE-2026-33413
4 min read
APT41 Deploys Stealthy Backdoor to Harvest Cloud CredentialsHIGH
Threat Intel

APT41 Deploys Stealthy Backdoor to Harvest Cloud Credentials

China-linked threat actor APT41 is deploying a novel, low-detection backdoor against AWS, Google, Azure, and Alibaba Cloud to harvest credentials and establish persistence.

4 min readAPT41

Stay Updated

Get the latest cybersecurity news delivered to your inbox.