
CloudSEK
@cloudsek
Followers
2K
Following
331
Media
332
Statuses
1K
CloudSEK is a contextual AI company that predicts Cyber Threats. Combining the power of Cyber,Brand & Attack Surface monitoring to give context to Digital Risk
Singapore
Joined October 2015
Scammers are using AI-generated influencers & fake endorsements to run investment scams on Instagram, FB & Telegram. 120+ scam ads, deepfakes of celebs, and fake promises like “double your money in 3 hrs.”.Read Full Investigation:
cloudsek.com
In July 2025, scammers in India used deepfake videos of influencer “Shweta Sharma” to run over 120 fake investment ads on Facebook and Instagram. The identity was stolen from real public figures,...
0
2
3
A multi-crore counterfeit currency network is operating in plain sight on Facebook & Instagram. CloudSEK’s latest report reveals how fake notes are being sold with GPS, faces & phone numbers traced. 📥 Read the full report:
cloudsek.com
Download report on
0
3
5
CloudSEK had an amazing time at @bsidesbangalore 💙.🏆 Koushik Pal – Cybersecurity Samurai of the Year.🏆 CloudSEK – Best Product Security Company 2025.CEO Rahul Sasi shared our story: 0 to 100 Cr 🚀.Big thanks to the community! #ACSC2025 #InfosecIndia
0
0
2
🚨 Blackhat SEO is hijacking India’s search results!. Scammers use expired domains, fake blogs & cloaks to rank high on Google—tricking users into scams. If it looks too convenient, it probably is. Watch how CloudSEK is exposing this. #CyberSecurity
1
1
3
Phishing 3.0 is here—powered by AI, hosted on trusted platforms, and designed to bypass traditional email scanners. 🚨. Reactive security isn’t enough anymore. Watch how CloudSEK tackles modern phishing with proactive detection. 🎯. #Phishing #CyberSecurity #AIattacks #CloudSEK
0
0
2
CloudSEK’s latest report reveals how the Androxgh0st botnet hijacked a University of California, San Diego, subdomain to host its C2 server. 🔸 12+ CVEs exploited.🔸 50% rise in attack vectors.🔸 RCE, webshells, cryptomining. Full report 👇.
cloudsek.com
CloudSEK uncovered that the Androxgh0st botnet compromised a University of California, San Diego subdomain to host its C2 logger. Active since 2023, the botnet exploits vulnerabilities in Apache...
0
3
4
🚨 Over 33,000 employee records exposed!.CloudSEK’s BeVigil found open API endpoints at a major tech firm—leaking PII, device info & project data. Just one misconfigured API can lead to a full-blown data breach. 🔒 Secure your APIs before attackers find them. #CyberSecurity #API
0
0
2
🚨 New #AMOS variant targets macOS via fake Clickfix delivery alerts spoofing Spectrum domains. A Russian-speaking group is behind it. Steals passwords, bypasses security, drops malware. Full report + IOCs:. .#CyberSecurity #Infosec.
cloudsek.com
CloudSEK researchers have uncovered a sophisticated campaign leveraging typo-squatted “Spectrum” domains to spread a new Atomic macOS Stealer (AMOS) variant. Disguised as a CAPTCHA verification, the...
0
3
4
🚨 $110M in loan data exposed due to a vendor's misconfigured Apache Superset dashboard (CVE-2023-27524). No login. No alerts. Just open access. SVigil caught it before threat actors did. This is why proactive monitoring matters.
cloudsek.com
CloudSEK’s SVigil identified a critical Apache Superset vulnerability (CVE-2023-27524) exposing a major financial institution’s sensitive loan data worth over USD 110 million. Swift detection allowed...
0
1
4
☕ Kicking off SecureTalks this Wed, Apr 2 at 5 PM!. 🎙️ Anvesh Yah, Security Leader @ Junglee Games, shares stories from 15 yrs in cybersecurity—lessons, challenges & wins. 📍SecureSips, CloudSEK.🎟️ Regesteration Link : . #CloudSEK #SecureTalks
0
0
3
🚨 One exposed Jenkins instance → Full infra compromise. RCE, AWS keys, BitBucket secrets & customer PII—all accessible due to a single misconfig. Discovered by CloudSEK’s BeVigil. Your CI/CD pipeline could be your weakest link. . #CyberSecurity.
cloudsek.com
What started as a single exposed Jenkins instance quickly snowballed into a full-blown infrastructure compromise—complete with remote code execution, leaked AWS keys, and customer PII exposure. In...
0
8
16
📩 Phishing attacks are getting sharper — and smarter. Threat actors are now bypassing traditional scanners with advanced evasion tricks. Our latest blog breaks it down & shares how to stay protected. 🛡️.🔗 #CyberSecurity #Phishing.
cloudsek.com
Phishing attacks are no longer just about fake emails and shady links—they’re evolving into stealth operations that outsmart even the most advanced detection tools. In this blog, CloudSEK’s Threat...
0
2
4
Fintech is moving fast—but are your digital lending platforms secure? .From exposed APIs to weak auth & zero encryption, real BeVigil scans show shocking flaws. One breach = lost trust + heavy fines. Read more 👉
cloudsek.com
As fintechs rush to simplify lending, they’re also unknowingly exposing massive security blind spots—exposed APIs, weak authentication, and zero encryption. This blog dives into real-world findings...
0
0
4
🚨 YouTube creators are under attack again! Threat actors are using fake brand deals & a sneaky “Clickflix” trick to deliver malware via PowerShell scripts. Our latest report breaks down this evolving threat 👇.🔗 #CyberSecurity #Malware.
cloudsek.com
In a chilling new twist on an old threat, cybercriminals are once again targeting YouTube creators—this time with an insidiously clever technique dubbed Clickflix. Masquerading as legitimate brand...
1
6
9
Meet CloudSEK Nexus AI 🛡️✨.Cyber threats are evolving—visibility alone won’t cut it. Nexus gives you:.🔎 Attacker insights.🔓 Infra weak points.💰 Risk impact.🌍 Unified attack surface view.⚡ Smart prioritization. Stay ahead. Stay secure. #CyberSecurity #ThreatIntel
0
0
1
Oracle Cloud denied the breach—but we dug deeper. In Part 2 of our investigation, CloudSEK validates the leaked data, analyzes threat actor activity, and uncovers evidence you need to see. Read the full report 👇. . #CyberSecurity #CloudSecurity.
cloudsek.com
On March 21, 2025, CloudSEK’s XVigil platform flagged a significant threat—a threat actor offering 6 million exfiltrated records from Oracle Cloud for sale. Despite Oracle’s public denial, our...
7
38
66
🚨 2025’s biggest supply chain hack is here. 6M+ records stolen. 140K+ Oracle Cloud tenants hit. Data now on sale in the dark web. CloudSEK breaks down how it happened — and why it matters. 👉 Read the full report:
cloudsek.com
CloudSEK uncovers a major breach targeting Oracle Cloud, with 6 million records exfiltrated via a suspected undisclosed vulnerability. Over 140,000 tenants are impacted, as the attacker demands...
2
6
11
🚀 IoT is booming—can we keep up?. CloudSEK’s Mayank Satnalika joined a roundtable by @VoltActiveData & @YourStoryCo to tackle scalability, security & speed in IoT. From resilience to risk, it’s a must-read!. 🔗 Full discussion:
yourstory.com
Scaling IoT for the future: The biggest challenges & solutions 🔍How can enterprises process millions of IoT events per second?
0
0
0
🚨 Is Your Messaging System at Risk? 🚨. BeVigil found exposed Apache ActiveMQ instances with default admin credentials, making them vulnerable to Remote Code Execution (RCE)! 😱. Don’t let hackers in—secure your system now! 🔐. Read more:
cloudsek.com
Many organizations use Apache ActiveMQ to streamline messaging, but default configurations can leave them vulnerable to cyberattacks. BeVigil’s security analysis uncovered multiple exposed ActiveMQ...
0
1
1