LexisNexis breach: attackers exploited an unpatched React app in its AWS environment and stole millions of records.
Our latest Casmer Labs analysis walks through the attack path and key indicators defenders should watch for.
https://t.co/14NtYPC0vl
#CloudSecurity#AWS
Password reset does not always remove access.
Attackers are registering internal OAuth apps in Microsoft Entra ID to persist after credentials change and MFA enforcement.
See our breakdown:
https://t.co/TdLrfQw9gQ
#CloudSecurity#IdentitySecurity#OAuth#EntraID
An AI agent reading calendar data could pass embedded instructions to a local command executor.
A reminder that prompt injection risks grow when language models are connected to system level tools.
See our breakdown:
https://t.co/lEcq5pIGAV
#AISecurity#PromptInjection
Discord’s age verification rollout renewed attention on its 2025 support vendor breach involving government ID images.
As identity checks expand, so does the volume of sensitive data platforms are responsible for protecting.
Analysis:
https://t.co/rt7fcusGjY
#DataSecurity
Linux SystemBC Variant Alert: The Silent Bridge
A Linux variant of SystemBC has been identified. The ELF build turns compromised Linux servers into SOCKS5 proxy relays for attacker traffic.
Read More:
https://t.co/p5ZULl8Olh
#ThreatIntel#LinuxSecurity#Malware
🚨 FortiGate “Phantom Patch” Alert
Casmer Labs reports bypasses of Fortinet’s Dec 2025 fixes, allowing super admin access on patched devices.
30K+ FortiGate systems may be exposed.
Read more in our latest blog:
https://t.co/F2VUvT9q2s
#FortiGate#ThreatIntel#CyberThreats
Join AWS + Cloud Storage Security for 2 exfil cases traced end to end.
See AWS guardrails surface signals and how DataDefender turns them into fast actor · time · object investigations.
Register: https://t.co/NS7NgzuXGf
#AWS#CloudSecurity#AWSPartner#DSPM#S3#SecOps
Supply chain attacks are shifting toward persistence and credential theft.
Shai-Hulud spreads through npm packages and targets secrets inside CI and build environments.
Casmer Labs analysis:
https://t.co/sMy4Kr1Emm
#SupplyChainSecurity#OpenSourceSecurity#ThreatIntel
Planning for 2026, utility & telecom environments remain high-risk. Ransomware in energy & utilities is up ~80% YoY.
@ikeGPS uses Cloud Storage Security on #AWS to support resilience and compliance.
Case study: https://t.co/7AOO69Eqs4
#CloudSecurity#AWS
Casmer Labs analyzed MongoBleed, a MongoDB memory disclosure caused by a logic error in compressed message handling.
Full analysis:
https://t.co/7ez6H4rbG0
#MongoDB#SecOps
Amazon EFS makes shared storage easy.
That convenience often gets less scrutiny.
Files arrive from build systems and workflows, then fade into the background.
AWS published a walkthrough with CSS on in-account malware inspection for EFS.
https://t.co/m8W5oxReoH
#AWS#AmazonEFS
Most Amazon EFS environments are locked down.
What teams rarely see is what is actually inside the files.
As teams plan for 2026, that blind spot matters.
AWS shows how to add in-account file inspection to EFS.
https://t.co/lsguPhm1jJ
#AWS#AmazonEFS#SecOps
Most files in EFS are trusted by default
Not by design
By habit
This walkthrough breaks down how teams can think about validating files closer to where that trust is created
AWS walkthrough on malware scanning for Amazon EFS
https://t.co/j9HFo5pJgA
#AWS#AmazonEFS
Planning for 2026 means more data, more automation, more AI.
What’s less clear is whether teams know what’s entering storage before it’s used.
Everyday files are still a major blind spot.
That’s the focus of this guide:
https://t.co/Z5egfs77ST
#CloudSecurity
Casmer Labs confirmed a critical vulnerability in React Server Components and Next.js 🚨
It allows unauthenticated remote code execution. CVE 2025 55182 and CVE 2025 66478 are rated CVSS 10.0.
Read More Here:
https://t.co/RQ2M8mWok1
#CasmerLabs#CloudSecurity#React#NextJS
Many teams at re:Invent shared the same priority.
Strengthen security where data lives in AWS.
Our white paper shows how DataDefender supports inventory, configuration checks, malware protection and activity monitoring across storage services.
https://t.co/0qlPzR9m2v
We’re live at #AWSreInvent in Las Vegas and ready to dive into what’s next for cloud storage security.
Stop by Booth #1221 to meet the Cloud Storage Security team, see live demos and learn how organizations are protecting the data their applications and AI workloads rely on.
🛡️ Back at @AWSreInvent Dec 1 to 4
Meet the team in person and grab time: https://t.co/bayhWgIha7
See DataDefender, our DSPM for cloud storage, live at Booth 1221 with demos, a drone raffle and dad jokes.
📍 Booth 1221
#AWSreInvent#AWSPartner#DSPM
🧭 Meet us at @AWSreInvent Dec 1 to 4
Let's schedule a chat: https://t.co/Z7OjDMtRIa
DataDefender is our DSPM for cloud storage See findings mapped to auditable proof across S3 EBS EFS and FSx at Booth 1221.
#AWSreInvent#AWSPartner#DSPM