On 23/06/2021 07:30, Hank Nussbacher wrote:
When bank robber Willie Sutton was asked "why do you rob banks?" he
answered "because that is where the money is". If we move RIPE
functions to the cloud don't be surprised 3-4 years from now when
objects suddenly get changed and no one can understand just how that
happened.
https://www.techradar.com/news/this-hyper-v-vulnerability-could-plague-microsoft-users-for-some-time
https://www.securityweek.com/researchers-publish-details-recent-critical-hyper-v-vulnerability
"The security issue that Guardicore Labs (in collaboration with
SafeBreach Labs) discovered was likely in production for more than a
year, as it first appeared in a vmswitch build in August 2019. The
vulnerability affects Windows 7, 8.1 and 10 and Windows Server 2008,
2012, 2016 and 2019.
An attacker with an Azure virtual machine could exploit the security bug
by sending a crafted packet to the Hyper-V host. This could have
resulted in the attacker running code on the Hyper-V host and
potentially taking down entire regions of the cloud."
-Hank