More

    Amazon EC2 instances under fire from whoAMI attacks potentially giving hackers code execution access




    • A flaw named WhoAMI was found in Amazon Machine Image
    • It allows threat actors to gain RCE abilities on people’s AWS accounts
    • A fix has been released, but many users are still yet to update

    Amazon Web Services (AWS) users are potentially vulnerable to a name confusion attack called “whoAMI”, experts have warned.

    The vulnerability, found in Amazon Machine Image (AMI), was discovered in the summer of 2024 by cybersecurity researchers DataDog, and has now been confirmed by Amazon, which said it fixed the issue on its side, and urged users to update the code on their side and thus protect their premises.

    https://cdn.mos.cms.futurecdn.net/ZL8sTApVNuYzsE4KtgrrRE-1200-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    spot_imgspot_img