logo

Rethinking Your Threat Models for the Cloud by Kat Traxler

ID: fc2f2be5-b6e1-5a70-9b10-fa8efc4300bb

STIX ID: report--fc2f2be5-b6e1-5a70-9b10-fa8efc4300bb

Feed Name: Vectra AI Blog

Date Published: 2023-05-03

Date Updated: 2026-05-01

...
...

This post explains how cloud architecture and publicly exposed control‑plane APIs change the attack surface compared to traditional on‑prem environments, describing attack progression (initial compromise, cloud privilege escalation, IAM-based persistence) and cloud‑native data exfiltration over the CSP backbone; it warns that network- and host-based sensors are insufficient and that defenders must rely on control‑plane logs and cloud-native detection strategies.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.