Cloudy with a chance of attacks





No, this is not a review of a new part of the cartoon or a weather forecast. Here we will talk about what cloud security is and how to prevent attacks on your cloud.






Introduction

. , , . , , , . " ", - . . , , -, Dropbox, OneDrive, Google Drive, iCloud, ., Mail.Ru, , Mega, BOX, pCloud, Files.fm, WDfiles.ru, wdho.ru, Anonfile.com My-Files.Ru, .





. (cloud security) — , , , , . , .





, .  , , , .





, , .  , , .





:





  • (IaaS)





    , , .





  • (PaaS)





    , . .





  • (SaaS)





    . - API .





, , .





?

:













  • ,









.





, McAfee .





. , , . , . , , VPN . COVID-19 , , , , - .





:





  • 50%, .





  • 600%. , , .





  • 630%, , .





, ? 2020 , , , , , . Microsoft , 775%. , Microsoft . - , 2020 . , . , . , McAfee 30 McAfee MVISION Cloud 2020 .









. , 50%. , 144% , (114%). B Acrobat Enterprise Zoom (+ 350%), Microsoft Teams (+ 300%) Slack (+ 200%).





, . , . IaaS/PaaS , AWS, . 14 IaaS, 2269 . , 5,5% AWS S3 . , . . 92% Dark Web ( , , ).





. - , . , , . , (), , , .





. , , 2017 , Amazon Web Services. , , AWS, . 28 -, Amazon Web Services, , . Trello, Coursera, IFTTT, Amazon S&P 500. .





Gartner ,  2022 90% , 278,3 , (IaaS).





COVID-19 .  , , .





When the COVID-19 pandemic hit, there were a few initial hiccups but cloud ultimately delivered exactly what it was supposed to. It responded to increased demand and catered to customers’ preference of elastic, pay-as-you-go consumption models.





, - Gartner , .





When you move to cloud, one of the great things that comes from that is really kind of forcing you to think about how to run in a lights-out operation.





 - Deloitte





: ?

, , , .





, , .





, , , .





, , , , .  , , , .





, , , .  , , , , .





1. " " (DDoS)

.  - , , DDoS- .





(IoT), , DDoS- .  , , .





2.

, , , .





, , , .  , , .





3. -

- , .  , , - , , .





4.

, -, .  -, «» .





- .  , .





, .





5.

.  , .





, , .  , .





, , , , , .  (XSS).





Amazon, ,  ,  XSS , , Amazon.com.  , , , , - .





« » (MITC) , . MITC , , , Dropbox OneDrive, , .





6.

, « », .  .





7.

- , .  , , , .





, , , .





8.

- , .  - , .  , .





9. API

(API) - , .





, , , , .  API- , , , , .





, API- , , .





, , , . (, ), . , , , :





  • . . , .





  • . , URL-.





  • , , . , .





  • . , .





-, , , .





.  , , , , , , , , .





, .  , , , , , .












All Articles