8.2.2. Cloud vulnerabilities

  • May 2009, target of a serious distributed denial-of-service (DDoS) attack
    • services such as Gmail, Docs, News and Apps are not available for several days
    • probably an attack from the infected computers by the Windows worm, Conficker

Amazon 2/3

  • October 2009, Bitbucket has been subject to DDoS attack
    • Bitbucket web-based code-hosting service runs its entire site on Amazon EC2
    • servers are down for at least 19 hours
    • UDP and TCP SYN packets

  • June 2012, lightning took down 10 datacenters in United States
    • Recovery took a long time with problems, one of the dataceneters failed to switch to backup

Apple 3/3

  • August 2014, embarrassing celebrity photos leak
    • probably iCloud account was obtain by phishing and bruteforce guessing
    • brute-force attacks are possible to the end of year 2014, then hackers realized the utility which force Apple to patch the vulnerability

