Try GOLD - Free
The Toxic Cloud Trilogy
DataQuest
|December 2024
As Indian organisations increasingly migrate to the cloud, they face a complex and evolving security landscape. Ari Eitan, Director of Research at Tenable, highlights the "Toxic Cloud Trilogy" - a convergence of publicly exposed workloads, critical vulnerabilities, and over-privileged identities - as a critical threat to Indian organisations. In this interview, Eitan discusses the unique vulnerabilities of cloud environments, systemic issues preventing organisations from fully addressing weaknesses and practical steps Indian organisations can take to mitigate these risks.
Could you explain what the “toxic cloud trilogy” entails and why it poses such a critical threat to indian organisations?
The toxic cloud trilogy is a convergence of publicly exposed workloads, critical vulnerabilities, and overprivileged identities. Separately, each of these factors poses a security risk. Together, they create a scenario that warrants attention.
In the cloud, publicly exposed workloads can function as beacons, accessible from the internet. Such exposure, even when unintentional, allows cybercriminals to identify potential entry points with ease. Add unpatched vulnerabilities into the mix, and the risk is amplified. These gaps create a straightforward exploitation pathway.
The third factor – over-privileged identities – further raises the stakes. When access permissions exceed what is necessary, attackers can move more freely across systems, accessing data and services with fewer barriers. This toxic cloud trilogy turns what might have been a limited security issue into a broader operational concern, allowing attackers to extend their reach if they gain access.
Many organisations continue to face challenges in securing cloud data effectively. What specific aspects of the cloud make it uniquely vulnerable, particularly in complex environments?
It’s much easier to store data in the cloud because every time organisations want to store new data, they can increase cloud storage with the click of a button. With data storage becoming easier, organisations are motivated to store more data that they can leverage to advance their AI capabilities. Over the last few years, LLMs have become more accessible, introducing new challenges.
This story is from the December 2024 edition of DataQuest.
Subscribe to Magzter GOLD to access thousands of curated premium stories, and 10,000+ magazines and newspapers.
Already a subscriber? Sign In
MORE STORIES FROM DataQuest
DataQuest
Empowering India's Al future through data: Snowflake's Vijayant Rai on innovation, collaboration, and talent
Snowflake India MD Vijayant Rai shares how the company is unifying data, advancing AI innovation, and skilling the next generation for a data-first India.
6 mins
December 2025
DataQuest
How AI is redefining delivery in the digital engineering era
As AI reshapes software engineering, delivery models are evolving from effort-based execution to intelligent, outcome-driven systems that blend human and machine collaboration.
3 mins
December 2025
DataQuest
NetSuite's Global Vision: Building the Intelligent Enterprise for the Al Era
At SuiteWorld 2025, NetSuite unveiled an AI-first vision with embedded assistants, customizable AI workflows, and global expansion focused on balancing innovation, trust, and local market needs.
4 mins
December 2025
DataQuest
V. Rajaraman: The teacher who built India's computing mind, no more
When a teacher departs, the blackboards weep. A generation of learners, spread across the world, pause and go back in time, overwhelmed by a quiet sense of gratitude and loss. Such is life, and such is India’s timeless Guru-Shishya parampara, where many jambavans silently walk the corridors of knowledge, leaving behind an imprint that endures long after they are gone.
5 mins
December 2025
DataQuest
Pilot or Paradox: Where are you parking your Al today?
Fragmented data, model pluralism, lack of a fabric, not enough skills, model economics, model volatility and the blank page syndrome- everything matters when it comes to making sure that an AI pilot does not end up as a paradox. And whether you are in that '5 pc' club?
6 mins
December 2025
DataQuest
QA engineers must think like adversaries
What happens when Ramp-testing a vehicle happens around the assembly line, earlier-faster-deeper-and-smarter than before? And as ruthless as a crash-test?
4 mins
December 2025
DataQuest
Why data readiness defines GenAl success: Krish Vitaldevara, Informatica
Informatica's Krish Vitaldevara explains data readiness gaps, CLAIRE's evolution, multi-cloud neutrality, governance for GenAI, ROI metrics, and the impact of the Salesforce acquisition.
7 mins
December 2025
DataQuest
Customer Zero to Global Impact: Salesforce's Playbook for Intelligent Enterprise Transformation
At Dreamforce 2025, Salesforce unveiled Agentforce 360, highlighting how context-aware AI agents are driving measurable business transformation across India and ASEAN.
3 mins
December 2025
DataQuest
DisCERNing Quantum – And not as some Shiny-Pink Uni-saurus
Noise control, fault tolerance, error-correction, superconducting circuits, trapped ions, photonic systems, hardware stability, hardware scalability, algorithmic maturity, strong-enough qubits - everything matters when it comes to the difference between reality and disillusionment with the Quantum Advantage.
6 mins
December 2025
DataQuest
Improving Efficiency and Supplier Relations through Accounts Payable Automation
AP automation transforms accounts payable from a cost centre into a strategic enabler, driving efficiency, transparency, and stronger supplier relationships.
4 mins
December 2025
Listen
Translate
Change font size
