🚨 CRITICAL: CVE-2025-65037 in Azure Container Apps enables unauthenticated remote code injection (CVSS 10). No patch yet — restrict access, monitor for attacks, update IR plans. Full advisory: https://radar.offseq.com/threat/cve-2025-65037-cwe-94-improper-control-of-generati-ddd87b56 #OffSeq #Azure #CloudSec #Vulnerability
🚩 CoPhish phishing campaign (HIGH severity) targets Copilot Studio agents to steal OAuth tokens — enabling session hijack & cloud access. No CVE. User training, OAuth app reviews, and token monitoring are key. Details: https://radar.offseq.com/threat/new-cophish-attack-steals-oauth-tokens-via-copilot-266ec823 #OffSeq #OAuth #Phishing #CloudSec
⚠️ HIGH-severity operational risk: the remediation gap in multi-tool cloud environments delays fixing critical vulnerabilities. Solutions like Pentera Resolve automate and unify workflows, reducing exposure and ensuring compliance. More info: https://radar.offseq.com/threat/bridging-the-remediation-gap-introducing-pentera-r-0c2edfa6 #OffSeq #VulnMgmt #CloudSec

Dear fantastic BSides community.

So here it is, the #BSidesLuxembourg2026 date announcement!!

We’re expanding into a 3-day event! It will be very exciting, we hope you all agree !?

May 6th will be exclusively for workshops.
May 7-8th will be for various talk tracks, tracks to be determined at a later stage but might include:

1 #Offsec
2. #CloudSec
3. #SOC
4. Etc

Do you have a track idea? Shoot it at us!

#bsides
Feel free to boost, fam.

Tickets booked for #fwdcloudseceurope - hope to meet some new and old faces there!

#CloudSec #Fwdcloudsec

🎥 Missed one of my past conference talks? Let’s fix that.

I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.

“Cloud Native Security; Explained”
📽️ https://twp.ai/4ipSVP

#CyberSecurity #SecurityAwareness #cloudsec #cloud #cloudnative

Cloud Summit 2021: Cloud Native Security with Tanya Janca

YouTube

🎥 Missed one of my past conference talks? Let’s fix that.

I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.

“Cloud Native Security; Explained”
📽️ https://twp.ai/4iosID

#CyberSecurity #SecurityAwareness #cloudsec #cloud #cloudnative

Cloud Summit 2021: Cloud Native Security with Tanya Janca

YouTube
🚨 CRITICAL vuln (CVE-2025-49831) in CyberArk Conjur OSS <1.22.1 & Secrets Manager, Self-Hosted (<13.5.1, 13.6): Improper auth enables rerouting of AWS creds via misconfigured networks. Upgrade immediately! https://radar.offseq.com/threat/cve-2025-49831-cwe-287-improper-authentication-in--6d5b7789 #OffSeq #CyberArk #Vuln #CloudSec

🎥 Missed one of my past conference talks? Let’s fix that.

I’m sharing my favorites—packed with real-world advice, lessons, and a few laughs.

“Cloud Native Security; Explained”
📽️ https://twp.ai/4in9re

#CyberSecurity #SecurityAwareness #cloudsec #cloud #cloudnative

Cloud Summit 2021: Cloud Native Security with Tanya Janca

YouTube

@fwdcloudsec Europe is offering need-based scholarships for students in the infosec field or those looking to transition. The scholarship covers a complimentary ticket and a stipend for travel costs.

🗓️ Apply by 13th July 2025 at 23:59 CET (UTC+1).

Priority is given to those living within a 4-hour flight to Berlin.

For more info, visit: https://fwdcloudsec.org/conference/europe/

#CloudSec #Infosec #Scholarship #CyberSecurity #Berlin #TechConference #StudentOpportunities #europe #cybersecurity

Scholarships | NA 2026 | fwd:cloudsec

The fwd:cloudsec scholarship program supports individuals who would benefit from attending the conference but face financial barriers. We welcome applications from students, career changers, and self-taught practitioners passionate about cloud security.