Bonum Certa Men Certa

Clown Computing Means Security/Data Breaches, Not Just the Outsourcing Itself (They Get Cracked, Too!)

posted by Roy Schestowitz on Oct 04, 2023

Cloud Computing

Reprinted with permission from Ryan Farmer.

The Capital One Data Breach settlement hit my bank account this morning.

It was enough to….pay off some credit cards.

(I don’t carry a deficit from month-to-month, which credit card companies call “balances”, as if it was money you had.)

But how did it get here?

Well, several years ago, Capital One decided to make me an Amazon user without my consent, like so many companies and government agencies do.

They put the personal information of their customers into Amazon AWS, and then like Microsoft’s Azure “cloud” also usually does, it spilled everything out in a data breach.

Another Microsoft Azure breach at the US State Department recently had the attacker net 60,000 sensitive E-Mails.

These “Cloud” companies make it impossible to secure your data. They can’t even secure theirs!

Microsoft was a victim of their own setup, spilling out over 40 TB of company secrets.

In the case of Capital One and Amazon AWS, it’s just yet another way the bad guys will have my personal information forever.

I was expecting maybe $10-20 and it ended up being a lot more than that. You almost never get any amount of money for these things. They just comply with meaningless “regulations” from the government about informing you and giving you “credit monitoring” for a year. So I’m surprised they paid anything at all.

When I woke up and got the E-Mail about the size of the check I was….well, you always need money, right?

Unfortunately, the terms of the settlement did not require them to ditch Amazon AWS and develop some method of storing data that has some security to it, so there’s nothing preventing it from happening over and over again.

Microsoft Azure is hardly a choice either. After endless breaches, for its part, Microsoft usually screams that its customers are to blame for misconfiguring Azure.

If Microsoft can’t even configure it to protect Microsoft’s own trade secrets, who can?

The only reason companies choose these “solutions” is because they get to outsource from having proper IT and it sounds good to a bean counter, and it’s your information they’re exposing anyway.

Microsoft overbuilt and loses money, and burns through excess capacity with “AI”, and even that comes up to bite the user in the ass.

Bleeping Computer ran a story the other day that says “Chat with Bing” is now putting ads in that redirect the user to malicious software.

So have fun with that ransomware if you click on the Chaff Bot nonsense. I’ll just be over here with my actual search engine.

(SearXNG through Searx.be)

Hey, at least Windows 11 is so bloated that it lets you play a video game during the two hour install.

Unfortunately, the “game” is an advertisement for Microsoft Edge.

Other Recent Techrights' Posts

"Security Advantages" Explained by a Scammy "Security" Site That Uses LLMs to Spew Out Garbage
destroying the Web by saturating it with "bullshit".
Over at Tux Machines...
GNU/Linux news for the past day
 
Certificate Authority Let's Encrypt Falls to 0.7% in Geminispace (It Was Around 12% Just 2 Years Ago and 7.5% This Past February)
Let's Encrypt is down again
Gemini Links 13/10/2024: Self-hosting Snac2 and Invasion of e-ink
Links for the day
SDxCentral, which the Linux Foundation Paid to Produce Marketing SPAM, Has Now Become Slop (LLM Spew) Disguised as 'Articles'
Google should delist it
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, October 12, 2024
IRC logs for Saturday, October 12, 2024
Links 12/10/2024: More Site Blocking, China's Hostility, and Evan Gershkovich's Upcoming Book
Links for the day
Links 12/10/2024: Boeing to Cut 17,000 Jobs, Medieval Sleeping Habits, Warning About Liquidweb
Links for the day
Links 12/10/2024: Health, Safety and Climate Concerns
Links for the day
Gemini Links 12/10/2024: Ensemble and Assembler
Links for the day
Links 12/10/2024: TikTok Layoffs and Risk of More Wars
Links for the day
IRC Proceedings: Friday, October 11, 2024
IRC logs for Friday, October 11, 2024
Gemini Links 11/10/2024: Against Cynicism, on Atheism, and Dropping Off The Internet
Links for the day
IBM Employees Smell Another Wave of Mass Layoffs (and Explain the Signs)
IBM currently has the policy of hiding the layoffs from shareholders and from the press using NDAs
Links 11/10/2024: Lots More Censorship and Growing Concerns About Health Impact of Social Control Media
Links for the day
Going Almost 4.5 Decades Back to Find 'Dirt' on a Person
That incident was 42.5 years ago. Is that how far some people would go in an effort to discredit a person?
XBox is Dead. This is Just the Beginning.
the main reason Microsoft bought Activision/Blizzard was to hide the growing losses and failure of XBox
The Risk to the "Linux" Brand
Brands that are not guarded from misuse/abuse will inevitably lose their original meaning and their value
Gemini Links 11/10/2024: Deploying Common Lisp Programs and Examining FreeBSD
Links for the day
Links 11/10/2024: Discord Still Blocked in Turkey, Google Might be Split
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, October 10, 2024
IRC logs for Thursday, October 10, 2024