The top 10 cloud security fails and how to avoid them: usd AG gives presentation at CloudLand 2023

5. April 2023

From June 20 until June 23, 2023, the second edition of the German-speaking "CloudLand“ festival of the German-speaking Cloud Native Community (DCNC) (in german) will take place at Phantasialand, and is actively designed by international community experts. The community festival will focus on container & cloud technologies, microservices & domain-driven design, DevOps & methodology and CI/CD & automation.

Dr. Kai Schubert, Managing Security Consultant at usd AG, and Phillip Ansorge, Senior Security Consultant at usd AG, have been conducting cloud security audits for years and will be on stage on June 21 as part of their expert talk "The Top 10 Cloud Security Fails and How to Avoid Them."

In the expert talk, they will share and discuss their experiences and best practices on cloud services configurations. What are the most common and important configuration errors on AWS, Azure and GCP? How can they be avoided? They provide practical tips and insights into their approach along with tools. After all, with this knowledge, vulnerabilities can be avoided and thus the next audit will bring fewer findings.

Dr. Kai Schubert is happy about the acceptance of the lecture: "The festival is a great opportunity for us to point out a still underestimated topic in front of a large professional audience as well as to raise more awareness for security in the Cloud"

Also interesting:

Security Advisories on PRTG Network Monitor

Security Advisories on PRTG Network Monitor

The pentest professionals at usd HeroLab examined the PRTG Network Monitor web application as part of web application pentests and identified several vulnerabilities. Two vulnerabilities relate to cross-site scripting (XSS), which allows attackers to inject JavaScript...

PCI Secure Software Standard v2.0: What You Should Know

PCI Secure Software Standard v2.0: What You Should Know

On 15 January 2026, the PCI Security Standards Council (PCI SSC) released version 2.0 of the PCI Secure Software Standard. This is the first comprehensive revision since the introduction of the standard. Insight into the Key Changes The new version streamlines the...

Part-IS and ISO 27001: How to Leverage Synergies for Your Compliance

Part-IS and ISO 27001: How to Leverage Synergies for Your Compliance

On 22 February 2026, the EU Regulation Part-IS for aviation organizations will come into force. They must manage information security risks in a way that best protects civil aviation safety. Many already rely on an ISMS according to ISO 27001 – but is that enough for...

Categories

Categories