Threat Brief for the Data Cloud

With the movement of data to cloud-based databases, warehouses and pipelines, there has been a renewed emphasis from security researchers and professionals to develop and adopt security solutions focused on the data layer. The security team at Cyral has compiled the following list of most critical security risks that developers, IT teams and organizations should be aware of.

We break down:

  • Threats: Exposed Data Endpoints, SQL Injections, and Shared Credentials
  • Tactics: Initial Access, Credentials, and Exfiltration
  • Techniques: Exploit Public-Facing Applications, Network Service Scanning, and Brute Force

