Hacking by the hour
A server on Amazon’s EC2 service was used as part of the second-largest online data breach is U.S. history according to a recent Bloomberg article. This scenario was not a matter of if, but when. It’s been a tough month for negative cloud news, but don’t judge the marketplace as a whole for actions taken via a cloud server from any individual provider.
Fact: Public cloud services that allow automated online sign-up simplify the lives of hackers. No longer do hackers need to build large farms of botnets when the cloud is available by the hour. With stolen credit cards and a few clicks of a mouse a hacker can begin to wreak havoc using large computing resources and networks. Don’t be fooled though, hackers will find a way whether they are paying by the hour or they just hijacked your mail server sitting in your office or remote data center.
Fact: Security risks exist everywhere whether your gear is in the cloud or not. Amazon can’t be blamed for the fact that a hacker used its servers for nefarious purposes, albeit an automated sign-up process won’t stop motivated hackers. This level of attack should be a wake-up call to any company who is storing data online. All too often we fail to ask simple questions such as “Why do we need this much data?” A guiding principle should be the least amount of information to serve the purpose. It’s great that marketing wants to know everything about a consumer, but there are costs, risks, and responsibilities you assume in conjunction with storing that data.
We have met the enemy and he is us: Recognize that security attacks are likely happening right now. Don’t assume that the cloud is any more or any less secure than your current environment. A significant amount of cloud server security has to happen at the OS and application layer. Ask security related questions of your cloud partner about how they manage risks. Finally, build out application security profiles and identify what data you need and why. Chances are you might find out you’ve been storing more information than needed to serve your customers.
513.361.0800
Data center brochure









