back to article Cryptocurrency-mining AWS Lambda-specific malware spotted

Cado Security says it has discovered a strain of malware specifically designed to run in AWS Lambda serverless environments and mine cryptocurrency. The team admitted it doesn't quite know how the software nasty, dubbed Denonia, is deployed, though you're welcome to take a guess. "It may simply be a matter of compromising AWS …

  1. Pascal Monett Silver badge

    "Lambda is secure by default"

    That is a high claim.

    The only thing that is secure by default is a safe hidden in a salt mine behind a camouflaged brick wall that nobody knows is there and everyone involved in making it happen has been brought to a pit in another country and shot.

    And those that did the shooting were brought to a pit in another country and shot.

    Then the person having orchestrated all this took a poison pill and died.

    THAT is secure by default.

    The rest is just guardrails surfing on hope.

    1. Anonymous Coward
      Anonymous Coward

      Re: "Lambda is secure by default"

      It's Amazon's way of creating plausible deniability. Just how Amazon keeps telling it's employees, Amazon does nothing wrong.

    2. Ben Bonsall

      Re: "Lambda is secure by default"

      Absolutely foolproof.

      Until some fool trips over a rock and knocks over the camouflaged brick wall...

  2. Anonymous Coward
    Anonymous Coward

    Hah!....Responsibility.......Yes......I've Heard Of It!!

    Quote: ".....It is the responsibility of the cloud service providers to educate their customers...."

    ...or, to put it another way....."blame the victim for the hack"...........

    We're talking about AWS here.....why am I not surprised?

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Other stories you might like