Bonum Certa Men Certa

Clown Computing Means Security/Data Breaches, Not Just the Outsourcing Itself (They Get Cracked, Too!)

posted by Roy Schestowitz on Oct 04, 2023

Cloud Computing

Reprinted with permission from Ryan Farmer.

The Capital One Data Breach settlement hit my bank account this morning.

It was enough to….pay off some credit cards.

(I don’t carry a deficit from month-to-month, which credit card companies call “balances”, as if it was money you had.)

But how did it get here?

Well, several years ago, Capital One decided to make me an Amazon user without my consent, like so many companies and government agencies do.

They put the personal information of their customers into Amazon AWS, and then like Microsoft’s Azure “cloud” also usually does, it spilled everything out in a data breach.

Another Microsoft Azure breach at the US State Department recently had the attacker net 60,000 sensitive E-Mails.

These “Cloud” companies make it impossible to secure your data. They can’t even secure theirs!

Microsoft was a victim of their own setup, spilling out over 40 TB of company secrets.

In the case of Capital One and Amazon AWS, it’s just yet another way the bad guys will have my personal information forever.

I was expecting maybe $10-20 and it ended up being a lot more than that. You almost never get any amount of money for these things. They just comply with meaningless “regulations” from the government about informing you and giving you “credit monitoring” for a year. So I’m surprised they paid anything at all.

When I woke up and got the E-Mail about the size of the check I was….well, you always need money, right?

Unfortunately, the terms of the settlement did not require them to ditch Amazon AWS and develop some method of storing data that has some security to it, so there’s nothing preventing it from happening over and over again.

Microsoft Azure is hardly a choice either. After endless breaches, for its part, Microsoft usually screams that its customers are to blame for misconfiguring Azure.

If Microsoft can’t even configure it to protect Microsoft’s own trade secrets, who can?

The only reason companies choose these “solutions” is because they get to outsource from having proper IT and it sounds good to a bean counter, and it’s your information they’re exposing anyway.

Microsoft overbuilt and loses money, and burns through excess capacity with “AI”, and even that comes up to bite the user in the ass.

Bleeping Computer ran a story the other day that says “Chat with Bing” is now putting ads in that redirect the user to malicious software.

So have fun with that ransomware if you click on the Chaff Bot nonsense. I’ll just be over here with my actual search engine.

(SearXNG through Searx.be)

Hey, at least Windows 11 is so bloated that it lets you play a video game during the two hour install.

Unfortunately, the “game” is an advertisement for Microsoft Edge.

Other Recent Techrights' Posts

Protecting People From So-called 'Social Media' is Not Censorship (No More Than Banning or Restricting Access to Cigarettes is 'Censorship')
it's not censorship when the thing you are censoring [sic] is itself a censorship powerhouse operated by a foreign and hostile nation (or oligarchs of Musk's nature)
[Meme] Solving Real Problems With So-called 'Social Media'?
Feeding and medically treating animals helps, unlike "likes"
EPO is Corrupt Like Always, What Changed is the Lack of Media Coverage (No Transparency Means No Democracy)
We need to revive online media and encourage dissent
[Meme] How NOT to Do Activism Online
So many self-professed liberals continue participating and driving traffic (ads) in X
Number of Libera.Chat Users (Simultaneously Online) Falls to Lowest Figure in Over 3 Years
Notice the downward trend/curve in recent months
Shedding Light on How the EPO Sheds Off Staff in Order to Grant Loads of Invalid (Fake) Patents in Europe
The people who decide on these policies lack a background in science
 
Google Has Only Solidified Its Search Monopoly in Africa Since Microsoft's Chatbot/LLM Hype Started
Africa is basically a "Failed Market" to Microsoft
[Teaser] EPO is Running Out of Brains
EPO has been in the business of offering fake patents
South Korea Has Its Own Alternative to IBM's Proprietary RHEL
Owing to the Open Enterprise Linux Association (OpenELA)
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, December 11, 2024
IRC logs for Wednesday, December 11, 2024
Fresh Rumour of Wave of IBM Layoffs Less Than a Fortnight Before Xmas Day
Unverified and anonymous
Links 11/12/2024: Additional Surveillance Ambitions and Cyberattacks on Sudanese Media
Links for the day
Links 11/12/2024: More Google Layoffs Rumoured for January, 'Linux' Foundation Colonises India
Links for the day
Mozilla's Firefox is Floundering, in the United Kingdom Its Share Fell to 2% This Month
HTTPS is becoming little but a transport layer for Chrome-like browsers, i.e. proprietary things with DRM and perhaps attestation (which means you cannot modify them; you'd get blocked for trying)
Links 11/12/2024: Climate Warming, 'People Can Fly' Layoffs
Links for the day
Gemini Links 11/12/2024: LLMs as Plagiarism, Advent of Code 2024 Momentum
Links for the day
In United Arab Emirates (UAE), Microsoft Now on One in 8 Internet-Connected Devices?
Web-connected clients are becoming scarce that run Microsoft operating systems (Windows)
IBM and Microsoft Hats at Linux Foundation
"Fedora Project Leader Matthew Miller: A change of hats!"
IBM's Latest Fedora Divestment Speaks for Itself
Microsoft must be very pleased with what IBM is doing
Why is UK Press Gazette Jingoistic About Plagiarists and LLM Slop Disguised as Journalism?
Press Gazette appears to be participating in the attack on honest journalism
In Central Africa, Which is Bigger Than Europe, Windows is About 5% in Terms of "Market Share"
they apparently got so fed up with colonialism
Communicating Outside of Skinnerboxes and Social Control Media
Tackling collective isolation and miscommunication (or communications being controlled by middlemen)
[Meme] Social Control Media is NOT Free Speech
It's time to discard that stupid argument that banning an abusive censor is "censorship"
Banning Not Only TikTok... if Not for FOMOC (Fear of Missing on Constituents)
It's a sort of addiction by peer pressure
Montenegro's Share of GNU/Linux Reaches All-Time High
We don't really know why, but that's just what the data from statCounter suggests
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, December 10, 2024
IRC logs for Tuesday, December 10, 2024
Yes, Of Course the Linux Foundation's OpenSSF Rejects Open Source and GNU/Linux (New Report)
longstanding tradition
Links 10/12/2024: Nvidia's Regulatory Woes, Trust Issues in LLMs (and Similar Recent Hype)
Links for the day
Gemini Links 10/12/2024: Lagrange 1.18.4 Released, New RNG
Links for the day
More Chatbot 'Articles' About Chatbots
Look what's happening to the Web...
Microsoft Falls to All-Time Lows in Cameroon
Windows down to just 4.6%
Brittany Day Still Uses Bots to 'Write' Articles (But Not All the Time)
it leads to a presumption of plagiarism
Links 10/12/2024: Trying "Hey Hi" With New Hype and Buzzwords, TikTok Bans Imminent
Links for the day
Google's CEO: LLMs' ‘Low-Hanging Fruit’ Now Exhausted
They basically tell shareholders not to expect returns on this hype
Microsoft Windows Falls to 11% in Senegal, an All-Time Low
In neighbouring countries (to the east of Senegal) the "market share" of Windows is even lower
The EPO's Corrupt Dealings With Microsoft Never Addressed, Only Worsened
it helps Microsoft spy on the competition and manipulate examiners dealing with its files
The Catching of Luigi Mangione Shows We Need Not Have More Surveillance (Than We Already Have; It's Excessive Anyway)
instead of saying surveillance is insufficient and thus we need more of it, now they can claim they have enough of it
[Teaser] Fate of Formalities Officers (FOs) at the EPO
Coming soon
Libre Liberia: Windows Down to 8% in Liberia
In Liberia, only about 1 in 12 Web requests seems to originate from Windows
Links 10/12/2024: Health, Politics, Economics, and More
Links for the day
Gemini Links 10/12/2024: LLM Plagiarism and "Flow" Review
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Monday, December 09, 2024
IRC logs for Monday, December 09, 2024