May 23, 2023, 3:14 p.m. |

The Record by Recorded Future therecord.media



A financially motivated cyberthreat group is attacking organizations’ Amazon Web Services (AWS) accounts to set up illicit cryptomining operations, researchers say. Analysts at cloud security company Permiso traced the activity to IP addresses associated with Indonesian internet service providers, but the report doesn’t speculate on who the attackers are. They “are engaged attackers at the

accounts addresses amazon amazon web services analysts attackers aws briefs cloud cloud security compromised cryptomining cybercrime cyberthreat indonesia internet internet service ip addresses operations organizations permiso report researchers security service service providers services web web services

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Information Security Engineers

@ D. E. Shaw Research | New York City

Security Engineer, Incident Response

@ Databricks | Remote - Netherlands

Associate Vulnerability Engineer - Mid-Atlantic region (Part-Time)

@ GuidePoint Security LLC | Remote in VA, MD, PA, NC, DE, NJ, or DC

Data Security Architect

@ Accenture Federal Services | Washington, DC

Identity Security Administrator

@ SailPoint | Pune, India