Bonum Certa Men Certa

Clown Computing Means Security/Data Breaches, Not Just the Outsourcing Itself (They Get Cracked, Too!)

posted by Roy Schestowitz on Oct 04, 2023

Cloud Computing

Reprinted with permission from Ryan Farmer.

The Capital One Data Breach settlement hit my bank account this morning.

It was enough to….pay off some credit cards.

(I don’t carry a deficit from month-to-month, which credit card companies call “balances”, as if it was money you had.)

But how did it get here?

Well, several years ago, Capital One decided to make me an Amazon user without my consent, like so many companies and government agencies do.

They put the personal information of their customers into Amazon AWS, and then like Microsoft’s Azure “cloud” also usually does, it spilled everything out in a data breach.

Another Microsoft Azure breach at the US State Department recently had the attacker net 60,000 sensitive E-Mails.

These “Cloud” companies make it impossible to secure your data. They can’t even secure theirs!

Microsoft was a victim of their own setup, spilling out over 40 TB of company secrets.

In the case of Capital One and Amazon AWS, it’s just yet another way the bad guys will have my personal information forever.

I was expecting maybe $10-20 and it ended up being a lot more than that. You almost never get any amount of money for these things. They just comply with meaningless “regulations” from the government about informing you and giving you “credit monitoring” for a year. So I’m surprised they paid anything at all.

When I woke up and got the E-Mail about the size of the check I was….well, you always need money, right?

Unfortunately, the terms of the settlement did not require them to ditch Amazon AWS and develop some method of storing data that has some security to it, so there’s nothing preventing it from happening over and over again.

Microsoft Azure is hardly a choice either. After endless breaches, for its part, Microsoft usually screams that its customers are to blame for misconfiguring Azure.

If Microsoft can’t even configure it to protect Microsoft’s own trade secrets, who can?

The only reason companies choose these “solutions” is because they get to outsource from having proper IT and it sounds good to a bean counter, and it’s your information they’re exposing anyway.

Microsoft overbuilt and loses money, and burns through excess capacity with “AI”, and even that comes up to bite the user in the ass.

Bleeping Computer ran a story the other day that says “Chat with Bing” is now putting ads in that redirect the user to malicious software.

So have fun with that ransomware if you click on the Chaff Bot nonsense. I’ll just be over here with my actual search engine.

(SearXNG through Searx.be)

Hey, at least Windows 11 is so bloated that it lets you play a video game during the two hour install.

Unfortunately, the “game” is an advertisement for Microsoft Edge.

Other Recent Techrights' Posts

It's Cheaper to Pay Bribes (and Produce Press Releases) Than to Pay Fines (After Lots of Negative Publicity)
Does the UK still have real sovereignty or do corporations from overseas purchase decisions and outcomes?
November 2023 Over With GNU/Linux at All-Time Highs According to statCounter
ChromeOS+GNU/Linux combined are about 7% of the "market"
 
Links 01/12/2023: Google Invokes Antitrust Against Microsoft
Links for the day
Over at Tux Machines...
GNU/Linux news
UK Government Allowing Microsoft to Take Over Activision Blizzard Will Destroy Jobs
Over 30,000 fired this year? More?
New Report Provides Numerical Evidence That Google Hired Too Many People From Microsoft (and Became Malicious, Evil, Sociopathic)
"Some 12,018 former Microsoft employees currently work for the search and data giant"
Google: Keep Out, Don't Save Your Files, and Also Let Us Spy on Everything You Do
Do you still trust "clown" storage?
IRC Proceedings: Thursday, November 30, 2023
IRC logs for Thursday, November 30, 2023
Links 01/12/2023: Many Suppressions in Hong Kong and Attempts to Legitimise Illegal and Unconstitutional Fake Patent 'Court' in EU (UPC)
Links for the day
Gemini Not Deflated Yet (Soon Turning 5!)
Gemini numbers still moving up, the protocol will turn five next summer
Links 30/11/2023: Belated End of Henry Kissinger and 'Popular Science' Shuts Online Magazine
Links for the day
Site Priorities and Upcoming Improvements
pages are served very fast
[Meme] One Person, Singular Pronoun
Abusing people into abusing the English language is very poor diplomacy
Ending Software Patents in Recent Years (Software Freedom Fighters MIA)
not a resolved issue
New Article From Richard Stallman Explains Why He Says He and She for Unknown Person (Not 'They')
"Nowadays I use gender-neutral singular pronouns for a person whose gender I don't know"
IRC Proceedings: Wednesday, November 29, 2023
IRC logs for Wednesday, November 29, 2023
Over at Tux Machines...
GNU/Linux news
Links 30/11/2023: Rushing Patent Cases With Shorter Trial Scheme (STS), Sanctions Not Working
Links for the day
Links 30/11/2023: Google Purging Many Accounts and Content (to Save Money), Finland Fully Seals Border With Russia
Links for the day
Lookout, It's Outlook
Outlook is all about the sharing!
Updated A Month Ago: Richard Stallman on Software Patents as Obstacles to Software Development
very recent update
The 'Smart' Attack on Power Grid Neutrality (or the Wet Dream of Tiered Pricing for Power, Essentially Punishing Poorer Households for Exercising Freedom Like Richer Households)
The dishonest marketing people tell us the age of disservice and discrimination is all about "smart" and "Hey Hi" (AI) as in algorithms akin to traffic-shaping in the context of network neutrality
Links 29/11/2023: VMware Layoffs and Too Many Microsofters Going Inside Google
Links for the day
Is BlueMail a Client of ZDNet Now?
Let's examine what BlueMail does to promote itself
Just What LINUX.COM Needed After Over a Month of Inactivity: SPAM SPAM SPAM (Linux Brand as a Spamfarm)
It's not even about Linux
Microsoft “Discriminated Based on Sexuality”
Relevant, as they love lecturing us on "diversity" and "inclusion"...
IRC Proceedings: Tuesday, November 28, 2023
IRC logs for Tuesday, November 28, 2023