146: The Google CyberCAT is Out of the Bag episode artwork

EPISODE · Dec 22, 2021 · 57 MIN

146: The Google CyberCAT is Out of the Bag

from The Cloud Pod | Weekly AI & Cloud News on AWS, Azure & GCP · host Justin Brodley, Jonathan Baker, Ryan Lucas and Matt Kohn | Cloud Computing & AI News

On The Cloud Pod this week, Oracle finally has some news to share. Plus Log4j is ruining everyone’s lives, AWS suffers a massive outage post re:Invent, and Google CAT releases its first threat report.  A big thanks to this week’s sponsors: Foghorn Consulting, which provides full-stack cloud solutions with a focus on strategy, planning and execution for enterprises seeking to take advantage of the transformative capabilities of AWS, Google Cloud and Azure. JumpCloud, which offers a complete platform for identity, access, and device management — no matter where your users and devices are located.  This week’s highlights A critical vulnerability in Apache Log4j wrought havoc over the weekend. Cloud platforms and developers alike are racing to fix the bug, which gives hackers an opportunity to take control of systems remotely.  On the heels of re:Invent, AWS suffered a major outage last Tuesday in its US-EAST-1 region, which had staggering repercussions across the cloud.  Google Cybersecurity Action Team (CAT) releases its first Threat Horizons report, revealing its top three concerns threatening cloud users today.   Top Quotes   “It’s amazing how much of our infrastructure and applications live on these open source contributions of one or two people, and how critical they are to the entire ecosystem. And when they break or they’re vulnerable, it becomes a huge issue for us very quickly.” “Think about what Microsoft did: They started signing device drivers and signing applications that run in Windows, and everyone thought Oh, they’re just exerting control, what a terrible idea. They’re just trying to corner the market. And now, of course, 15 years later, binding authorization is probably the most critical next step in securing the cloud.” General News: The Log4j Vulnerability is COVID for Tech In light of the critical Apache Log4j 2.0 vulnerability that gives attackers the ability to to execute arbitrary code on other systems, AWS has released a hotpatch for the logging platform. The aim is to help developers mitigate risk as they work to update their systems to 2.15 or newer.  ⏩ VentureBeat reminds us that while the Log4j debacle is bad, at least organizations now have tools and processes in place to respond quickly to zero-day bugs.  ✅

Episode metadata supplied by the publisher feed · Published Dec 22, 2021

Embed this episode

NOW PLAYING

146: The Google CyberCAT is Out of the Bag

0:00 57:10

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of The Cloud Pod | Weekly AI & Cloud News on AWS, Azure & GCP?

This episode is 57 minutes long.

When was this The Cloud Pod | Weekly AI & Cloud News on AWS, Azure & GCP episode published?

This episode was published on December 22, 2021.

Can I download this The Cloud Pod | Weekly AI & Cloud News on AWS, Azure & GCP episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!