logo

Beyond CVEs: The Exploitation of Everyday Misconfigurations

ID: dd1b9aae-80a6-5a8a-a936-1c1165320559

STIX ID: report--dd1b9aae-80a6-5a8a-a936-1c1165320559

Feed Name: Wiz Blog

Threat Score
70/100

Date Published: 2025-09-19

Date Updated: 2026-05-01

...
...

This blogpost warns that common cloud misconfigurations—unrestricted exposure, default/weak credentials, excessive permissions, and exposed databases—are being actively abused to gain RCE, steal credentials/data, and deploy crypto-miners. It details three case studies (exposed Selenium Grid enabling remote command execution, Spring Boot Actuator leaking heap dumps and enabling SSRF, and PostgreSQL's COPY FROM PROGRAM abused after credential compromise), gives prevalence context, and recommends visibility, proactive perimeter scanning, shift-left controls, and developer education while describing Wiz’s prevention and detection capabilities.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.