Several top E2EE cloud storage providers have serious security flaws



Some cloud storage providers offering end-to-end encryption (E2EE) are largely operating a broken ecosystem which could, in very realistic theory, allow threat actors to tamper with the files in a way that should not be possible, experts have claimed.

In an in-depth analysis, recently published on the brokencloudstorage.info website, cybersecurity researchers Jonas Hofmann and Kien Tuong Truong from ETF Zurich noted if a threat actor compromises a company server, they can “inject files, tamper with file data, and even gain direct access to plaintext.”

https://cdn.mos.cms.futurecdn.net/UpZ4RY9bVuxJmQZZW8iraj-1200-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img