Rethinking Your Threat Models for the Cloud by Kat Traxler
ID: fc2f2be5-b6e1-5a70-9b10-fa8efc4300bb
STIX ID: report--fc2f2be5-b6e1-5a70-9b10-fa8efc4300bb
Feed Name: Vectra AI Blog
This post explains how cloud architecture and publicly exposed control‑plane APIs change the attack surface compared to traditional on‑prem environments, describing attack progression (initial compromise, cloud privilege escalation, IAM-based persistence) and cloud‑native data exfiltration over the CSP backbone; it warns that network- and host-based sensors are insufficient and that defenders must rely on control‑plane logs and cloud-native detection strategies.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
