ramimac / aws-customer-security-incidents

A repository of breaches of AWS customers
GNU General Public License v3.0
686 stars 40 forks source link

Dataspine Incidents #196

Closed ramimac closed 1 month ago

ramimac commented 1 month ago

https://www.linkedin.com/feed/update/urn:li:activity:7219713829528563712

As friends and collaborators for over a decade, we've been working on various startup ideas in dev tools and infrastructure. In 2017, while building an ML ops toolkit on Kubernetes, we got hacked. During a pilot with a fintech customer, our cluster became victim to a crypto-jacking attack. As it turned out, a dependency in our container base image contained malware (a Monero miner) which triggered inside the customer's environment. Needless to say, we lost the customer and racked up a massive cloud bill as a tiny startup. This first-hand experience introduced us to one of the biggest challenges in software security today.