A Deleted Container Can Leave Data Behind
Cloudflare fixed a storage flaw that could expose fragments from deleted container disks to another customer. The incident shows why tenant isolation must cover storage reuse, not only the running workload.
Cybersecurity doesn't have to be complicated. I am here to break down concepts, threats, tips, and tools in simple language. For mere mortals and developers alike.
Since I have been asked this a lot: The best way to support this site, is to buy my books.
Cloudflare fixed a storage flaw that could expose fragments from deleted container disks to another customer. The incident shows why tenant isolation must cover storage reuse, not only the running workload.
Two Citrix NetScaler flaws are being exploited in the wild. The safe response has an awkward order: preserve the evidence, contain the appliance, install the exact fixed build, and then reset the trust that passed through it.
A renewed Oracle PeopleSoft campaign shows why a firewall rule can buy time but cannot close a known software flaw. Here is how to patch, look back, and prove the risky path is gone.
Attackers are exploiting an authentication-bypass flaw in N-able N-central. The lesson for developers and platform teams is not only to patch, but to treat every remote-management console as part of the application threat model.