{"id":22896,"date":"2021-01-05T06:18:30","date_gmt":"2021-01-05T11:18:30","guid":{"rendered":"https:\/\/devopsnews.online\/?p=22896"},"modified":"2021-01-05T06:18:30","modified_gmt":"2021-01-05T11:18:30","slug":"solarwinds-hack-endangering-cloud-services-api-keys","status":"publish","type":"post","link":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/","title":{"rendered":"SolarWinds hack endangering cloud services\u2019 API keys"},"content":{"rendered":"

The hack of SolarWinds Orion supply chain a few months ago might endanger Amazon Web Services and Microsoft Azure API keys and all related accounts.<\/p>\n

 <\/p>\n

Indeed, according to security company Ermetic, this attack doesn\u2019t only affect the organizations\u2019 on-premises systems but also their cloud-based infrastructure. Other experts reported that this could become a dangerous threat to cloud-based services.<\/p>\n

 <\/p>\n

It is a possibility that if the suspected attackers from Russian Intelligence agents were to extract and decrypt API keys from compromised Orion databases, they would then gain access to the related cloud-based services. The attackers could also use root API keys to get administrative access into any compromised accounts.<\/p>\n

 <\/p>\n

Therefore, it is essential that organizations take the fundamental precautions to protect their data and identify all exposed credentials. A series of actions in responses have been recommended such as rotating credentials, instituting least privilege protocols, and only deploying Orion on standalone and isolated accounts.<\/p>\n

 <\/p>\n

However, if Orion is deployed on an account that isn\u2019t completely isolated from the rest of the cloud environment, everything that came into contact with the account could be compromised as well, as resources and identities are all still connected to the cloud. Similarly, any piece of a cloud environment that uses Orion IAM identity could be compromised as it would give attackers access to sensitive resources.<\/p>\n

 <\/p>\n

Hence, every company should put into place greater controls on internal access policies as well as do a manual review of every identity and resource to identify the extent of exposure and take effective action.<\/p>\n

 <\/p>\n

It is also vital that security teams understand what impact it could have on other clouds in order to determine the extent of the damage. Indeed, if other integration accounts are compromised, they then may be used to exfiltrate data or create residency on others, creating an even greater threat.<\/p>\n","protected":false},"excerpt":{"rendered":"

The hack of SolarWinds Orion supply chain a few months ago might endanger Amazon Web Services and Microsoft Azure API keys and all related accounts.   Indeed, according to security company Ermetic, this attack doesn\u2019t only affect the organizations\u2019 on-premises systems but also their cloud-based infrastructure. Other experts reported that this could become a dangerous…<\/p>\n","protected":false},"author":123458,"featured_media":22897,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"content-type":"","pmpro_default_level":"","footnotes":""},"categories":[3352,3239,1158],"tags":[37,70,3584,448,44,112],"yoast_head":"\nSolarWinds hack endangering cloud services\u2019 API keys - DevOps Online North America<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"SolarWinds hack endangering cloud services\u2019 API keys - DevOps Online North America\" \/>\n<meta property=\"og:description\" content=\"The hack of SolarWinds Orion supply chain a few months ago might endanger Amazon Web Services and Microsoft Azure API keys and all related accounts.   Indeed, according to security company Ermetic, this attack doesn\u2019t only affect the organizations\u2019 on-premises systems but also their cloud-based infrastructure. Other experts reported that this could become a dangerous...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/\" \/>\n<meta property=\"og:site_name\" content=\"DevOps Online North America\" \/>\n<meta property=\"article:published_time\" content=\"2021-01-05T11:18:30+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2560\" \/>\n\t<meta property=\"og:image:height\" content=\"1707\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Yashesh Patel\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@DevOpsAmerica\" \/>\n<meta name=\"twitter:site\" content=\"@DevOpsAmerica\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Yashesh Patel\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/\"},\"author\":{\"name\":\"Yashesh Patel\",\"@id\":\"https:\/\/devopsnews.online\/#\/schema\/person\/1183cef5fa13624c55f3faf81f391435\"},\"headline\":\"SolarWinds hack endangering cloud services\u2019 API keys\",\"datePublished\":\"2021-01-05T11:18:30+00:00\",\"dateModified\":\"2021-01-05T11:18:30+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/\"},\"wordCount\":320,\"publisher\":{\"@id\":\"https:\/\/devopsnews.online\/#organization\"},\"image\":{\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg\",\"keywords\":[\"API\",\"Cloud\",\"cybersecurty\",\"data\",\"hacker\",\"security\"],\"articleSection\":[\"Cloud\",\"News\",\"Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/\",\"url\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/\",\"name\":\"SolarWinds hack endangering cloud services\u2019 API keys - DevOps Online North America\",\"isPartOf\":{\"@id\":\"https:\/\/devopsnews.online\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg\",\"datePublished\":\"2021-01-05T11:18:30+00:00\",\"dateModified\":\"2021-01-05T11:18:30+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage\",\"url\":\"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg\",\"contentUrl\":\"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg\",\"width\":2560,\"height\":1707},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/devopsnews.online\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"SolarWinds hack endangering cloud services\u2019 API keys\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/devopsnews.online\/#website\",\"url\":\"https:\/\/devopsnews.online\/\",\"name\":\"DevOps Online North America\",\"description\":\"by 31 Media Ltd.\",\"publisher\":{\"@id\":\"https:\/\/devopsnews.online\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/devopsnews.online\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/devopsnews.online\/#organization\",\"name\":\"DevOps Online North America\",\"url\":\"https:\/\/devopsnews.online\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/devopsnews.online\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/devopsnews.online\/wp-content\/uploads\/2020\/03\/DevOpsOnline_email.png\",\"contentUrl\":\"https:\/\/devopsnews.online\/wp-content\/uploads\/2020\/03\/DevOpsOnline_email.png\",\"width\":198,\"height\":64,\"caption\":\"DevOps Online North America\"},\"image\":{\"@id\":\"https:\/\/devopsnews.online\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/x.com\/DevOpsAmerica\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/devopsnews.online\/#\/schema\/person\/1183cef5fa13624c55f3faf81f391435\",\"name\":\"Yashesh Patel\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/devopsnews.online\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/7133dcc024275e35cf81ef202ce76441?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/7133dcc024275e35cf81ef202ce76441?s=96&d=mm&r=g\",\"caption\":\"Yashesh Patel\"},\"sameAs\":[\"https:\/\/devopsnews.online\"],\"url\":\"https:\/\/devopsnews.online\/author\/yashesh-patel\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"SolarWinds hack endangering cloud services\u2019 API keys - DevOps Online North America","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/","og_locale":"en_US","og_type":"article","og_title":"SolarWinds hack endangering cloud services\u2019 API keys - DevOps Online North America","og_description":"The hack of SolarWinds Orion supply chain a few months ago might endanger Amazon Web Services and Microsoft Azure API keys and all related accounts.   Indeed, according to security company Ermetic, this attack doesn\u2019t only affect the organizations\u2019 on-premises systems but also their cloud-based infrastructure. Other experts reported that this could become a dangerous...","og_url":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/","og_site_name":"DevOps Online North America","article_published_time":"2021-01-05T11:18:30+00:00","og_image":[{"width":2560,"height":1707,"url":"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg","type":"image\/jpeg"}],"author":"Yashesh Patel","twitter_card":"summary_large_image","twitter_creator":"@DevOpsAmerica","twitter_site":"@DevOpsAmerica","twitter_misc":{"Written by":"Yashesh Patel","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#article","isPartOf":{"@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/"},"author":{"name":"Yashesh Patel","@id":"https:\/\/devopsnews.online\/#\/schema\/person\/1183cef5fa13624c55f3faf81f391435"},"headline":"SolarWinds hack endangering cloud services\u2019 API keys","datePublished":"2021-01-05T11:18:30+00:00","dateModified":"2021-01-05T11:18:30+00:00","mainEntityOfPage":{"@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/"},"wordCount":320,"publisher":{"@id":"https:\/\/devopsnews.online\/#organization"},"image":{"@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage"},"thumbnailUrl":"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg","keywords":["API","Cloud","cybersecurty","data","hacker","security"],"articleSection":["Cloud","News","Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/","url":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/","name":"SolarWinds hack endangering cloud services\u2019 API keys - DevOps Online North America","isPartOf":{"@id":"https:\/\/devopsnews.online\/#website"},"primaryImageOfPage":{"@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage"},"image":{"@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage"},"thumbnailUrl":"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg","datePublished":"2021-01-05T11:18:30+00:00","dateModified":"2021-01-05T11:18:30+00:00","breadcrumb":{"@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#primaryimage","url":"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg","contentUrl":"https:\/\/devopsnews.online\/wp-content\/uploads\/2021\/01\/jefferson-santos-9SoCnyQmkzI-unsplash-scaled.jpg","width":2560,"height":1707},{"@type":"BreadcrumbList","@id":"https:\/\/devopsnews.online\/solarwinds-hack-endangering-cloud-services-api-keys\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/devopsnews.online\/"},{"@type":"ListItem","position":2,"name":"SolarWinds hack endangering cloud services\u2019 API keys"}]},{"@type":"WebSite","@id":"https:\/\/devopsnews.online\/#website","url":"https:\/\/devopsnews.online\/","name":"DevOps Online North America","description":"by 31 Media Ltd.","publisher":{"@id":"https:\/\/devopsnews.online\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/devopsnews.online\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/devopsnews.online\/#organization","name":"DevOps Online North America","url":"https:\/\/devopsnews.online\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/devopsnews.online\/#\/schema\/logo\/image\/","url":"https:\/\/devopsnews.online\/wp-content\/uploads\/2020\/03\/DevOpsOnline_email.png","contentUrl":"https:\/\/devopsnews.online\/wp-content\/uploads\/2020\/03\/DevOpsOnline_email.png","width":198,"height":64,"caption":"DevOps Online North America"},"image":{"@id":"https:\/\/devopsnews.online\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/DevOpsAmerica"]},{"@type":"Person","@id":"https:\/\/devopsnews.online\/#\/schema\/person\/1183cef5fa13624c55f3faf81f391435","name":"Yashesh Patel","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/devopsnews.online\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/7133dcc024275e35cf81ef202ce76441?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/7133dcc024275e35cf81ef202ce76441?s=96&d=mm&r=g","caption":"Yashesh Patel"},"sameAs":["https:\/\/devopsnews.online"],"url":"https:\/\/devopsnews.online\/author\/yashesh-patel\/"}]}},"_links":{"self":[{"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/posts\/22896"}],"collection":[{"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/users\/123458"}],"replies":[{"embeddable":true,"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/comments?post=22896"}],"version-history":[{"count":1,"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/posts\/22896\/revisions"}],"predecessor-version":[{"id":22898,"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/posts\/22896\/revisions\/22898"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/media\/22897"}],"wp:attachment":[{"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/media?parent=22896"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/categories?post=22896"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/devopsnews.online\/wp-json\/wp\/v2\/tags?post=22896"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}