【24h】

Vulnerability Scanning with Google Cloud Platform

机译:Google Cloud Platform的漏洞扫描

获取原文

摘要

Cloud is completely flipping the concept of business nowadays. Reducing capital and operational expenditure to a great extent already drew attention of big companies and industries. Not only startups but also large existing giant companies are shifting their data from local server to a public cloud and sometimes even taking the initiative to build a public cloud to host their sensitive data. A cloud can provide storage services, computing services and also infrastructure without any capital or operational expenses. From a single user to a multi-national million-dollar business can easily receive several types of services from a public cloud. There are numerous cloud providers in the market. Among the prominent ones, few names are mentioned here, such as Amazon AWS, Google Cloud Platform (GCP), and Microsoft Azure etc. GCP offers a wide array of services for many organizations and individuals around the world like other cloud providers. But the question is, all those data, confidential information, intellectual property of individual or industries safe enough? Information has become the most expensive commodity in modern days. A government can be shutdown, a transport system can be disabled, annoying spam calls, phishing emails, cyber bullying and more security threats are existing around us. Can we trust a public service provider? Hence our initiative aims at investigating that GCP is secure from inside attackers. Why we chose inside attackers? Well the idea is to check if GCP can detect and ignore an attack launched internally. In this case it should be secure enough to prevent from outsiders as well. The research investigation would involve Distributed Denial of Service (DDoS) attacks against a local virtual machine (VM) launched from GCP. There is a broad spectrum of VM's available in GCP compute engine service.
机译:如今,云完全颠覆了业务概念。减少资本和运营支出已在很大程度上引起了大公司和行业的关注。不仅是初创公司,还有大型现有的巨型公司都在将其数据从本地服务器转移到公共云,有时甚至主动建立一个公共云来托管其敏感数据。云可以提供存储服务,计算服务以及基础架构,而无需任何资本或运营支出。从单个用户到跨国公司,百万美元的企业都可以轻松地从公共云中接收多种类型的服务。市场上有许多云提供商。在突出的名称中,这里很少提及名称,例如Amazon AWS,Google Cloud Platform(GCP)和Microsoft Azure等。GCP与其他云提供商一样,为世界各地的许多组织和个人提供了广泛的服务。但是问题是,个人或行业的所有这些数据,机密信息,知识产权是否足够安全?信息已成为当今最昂贵的商品。政府可能会关闭,运输系统可能会瘫痪,令人讨厌的垃圾邮件呼叫,网络钓鱼电子邮件,网络欺凌以及我们周围存在的更多安全威胁。我们可以信任公共服务提供商吗?因此,我们的计划旨在调查GCP是否受到内部攻击者的攻击。为什么我们选择内部攻击者?好主意是检查GCP是否可以检测并忽略内部发动的攻击。在这种情况下,它应该足够安全,以防止外部人进入。研究调查将涉及针对从GCP启动的本地虚拟机(VM)的分布式拒绝服务(DDoS)攻击。 GCP计算引擎服务中提供了广泛的VM。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号