Essayer OR - Gratuit
The Toxic Cloud Trilogy
DataQuest
|December 2024
As Indian organisations increasingly migrate to the cloud, they face a complex and evolving security landscape. Ari Eitan, Director of Research at Tenable, highlights the "Toxic Cloud Trilogy" - a convergence of publicly exposed workloads, critical vulnerabilities, and over-privileged identities - as a critical threat to Indian organisations. In this interview, Eitan discusses the unique vulnerabilities of cloud environments, systemic issues preventing organisations from fully addressing weaknesses and practical steps Indian organisations can take to mitigate these risks.
Could you explain what the “toxic cloud trilogy” entails and why it poses such a critical threat to indian organisations?
The toxic cloud trilogy is a convergence of publicly exposed workloads, critical vulnerabilities, and overprivileged identities. Separately, each of these factors poses a security risk. Together, they create a scenario that warrants attention.
In the cloud, publicly exposed workloads can function as beacons, accessible from the internet. Such exposure, even when unintentional, allows cybercriminals to identify potential entry points with ease. Add unpatched vulnerabilities into the mix, and the risk is amplified. These gaps create a straightforward exploitation pathway.
The third factor – over-privileged identities – further raises the stakes. When access permissions exceed what is necessary, attackers can move more freely across systems, accessing data and services with fewer barriers. This toxic cloud trilogy turns what might have been a limited security issue into a broader operational concern, allowing attackers to extend their reach if they gain access.
Many organisations continue to face challenges in securing cloud data effectively. What specific aspects of the cloud make it uniquely vulnerable, particularly in complex environments?
It’s much easier to store data in the cloud because every time organisations want to store new data, they can increase cloud storage with the click of a button. With data storage becoming easier, organisations are motivated to store more data that they can leverage to advance their AI capabilities. Over the last few years, LLMs have become more accessible, introducing new challenges.
Cette histoire est tirée de l'édition December 2024 de DataQuest.
Abonnez-vous à Magzter GOLD pour accéder à des milliers d'histoires premium sélectionnées et à plus de 9 000 magazines et journaux.
Déjà abonné ? Se connecter
PLUS D'HISTOIRES DE DataQuest
DataQuest
Cognizant CAIO Babak Hodjat explains how Agentic AI will transform enterprises
Cognizant CAIO Babak Hodjat discusses agentic AI, sovereign compute, multilingual models, and Green AI, outlining how India can translate its AI ambitions into scalable enterprise impact and ecosystem growth.
7 mins
March 2026
DataQuest
Are You Bleeding While Leading?
The stress is compounded because of global trade tensions and increased volatility in financial markets
6 mins
March 2026
DataQuest
FROM RANK TO READINESS: WHAT DEFINES INDIA'S BEST T-SCHOOLS IN 2026
Dataquest-CMR's 2026 survey shifts from scale to outcomes, measuring placements, research, industry integration, and governance to judge readiness.
5 mins
March 2026
DataQuest
India's test-drive, World's triathlon
Pushing the needle, by threading the AI needle- AWS' top honcho shares how partners matter in bridging the gap between what customers need and what technology solves. And why a pilot in India is as good as a production-scale deployment in any other country.
5 mins
March 2026
DataQuest
India's AI moment is not about models alone, but who gets access, trust, and control
At the AI Impact Summit, India’s AI story moved beyond hype to a harder question: can the country build AI that is trusted, inclusive, sovereign, and useful at scale?
5 mins
March 2026
DataQuest
Why India may need a middle-power AI alliance to secure digital sovereignty
India's IndiaAI Mission is bold, but experts argue a middle-power 'CERN for AI' could pool funds and data, to secure sovereign intelligence and public-good outcomes.
3 mins
March 2026
DataQuest
AI slop. Not AI spit. Yet
The shiny flavours of speed and scale with AI can silently burn away deeper and long-term issues like quality, credibility and traceability. AI slop is not just broccoli. It can easily turn into a death-cap mushroom.
8 mins
March 2026
DataQuest
The AI Crayon Box: Where's The Pink?
Bias, under-representation, stereo-types, gender-insensitive UI, Conspicuous gaps on solutions that females need- as we celebrate W-Day; it's a good time to ask, again - Has AI been cognizant of that age-old puzzle that has troubled the best of human brains for centuries: 'What Do Women Want?'
10 mins
March 2026
DataQuest
Engineering India's Al-First Data Centres at Hyperscale
Rohan Sheth explains how AI and HPC are reshaping India's data centres, from density and cooling to power economics, sustainability, and hyperscale decision criteria.
4 mins
February 2026
DataQuest
From copilots to colleagues: Why agentic AI is forcing enterprises to rethink control, trust, and culture
As AI agents shift from assisting to acting, enterprises must redesign governance, data controls, and security guardrails so autonomy stays auditable, reversible, and trusted.
2 mins
February 2026
Listen
Translate
Change font size
