Software vulnerabilities push credential abuse aside in cloud intrusions
ID: b95bc78c-9223-506a-be11-e179832c7e87
STIX ID: report--b95bc78c-9223-506a-be11-e179832c7e87
Feed Name: Help Net Security
Threat Score
Google Cloud’s H1 2026 Cloud Threat Horizons report (covering H2 2025 activity) shows a shift toward rapid exploitation of unpatched third-party applications, extensive identity-based attacks (vishing, token theft, credential abuse), insider-driven data exfiltration to cloud storage, supply-chain compromises via developer tooling, and a sophisticated North Korean campaign abusing Kubernetes and service account tokens to steal cryptocurrency.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
