2025 Cloud Threat Hunting and Defense Landscape

Extreme TLDR Summary:

Insikt Group's report highlights escalating cloud threats, focusing on exploitation, misconfiguration, and credential abuse. Attackers exploit weak cloud services and credentials for broad victim access, using built-in functions for malicious actions. Key trends include registered cloud resources for attacks, diminishing DDoS effectiveness, and targeting AI services. Cloud misconfigurations remain a significant risk. Prevention requires maintaining service inventories, enforcing access controls, and patching vulnerabilities, especially as cloud environments evolve rapidly, increasing potential entry points for attackers.

https://www.recordedfuture.com/research/2025-cloud-threat-hunting-defense-landscape

The Work Moved: What the AI Coding Debate Actually Agrees On

AI coding has increased productivity (98% more PRs) but prolonged review times (91% longer), shifting work from coding to review processes. Various perspectives agree on data yet disagree on implications. Challenges include comprehension debt and the need for robust infrastructure. Strategies vary from spec-driven development to autopilot modes, focusing on context management and oversight. Risks involve reliance on AI without proper guardrails leading to misunderstandings and accountability issues. Ultimately, it's crucial to understand where complexity resides and ensure humans remain engaged in essential tasks.

https://leadership.garden/ai-the-work-moved/

An AI CEO Finally Said Something Honest : r/ExperiencedDevs

Dax Raad, CEO of anoma.ly, candidly critiques the current state of AI in organizations, stating that teams lack good ideas, workers are unmotivated, and AI is used to reduce effort rather than increase efficiency. He warns that bureaucratic hurdles persist, and high costs of LLM bills are a growing concern for CFOs.

https://www.reddit.com/r/ExperiencedDevs/comments/1r6olcv/an_ai_ceo_finally_said_something_honest/

AI Is Spreading Faster Than Companies Can Secure It, CISO Survey Finds

AI adoption is outpacing security measures, per a Pentera survey of 300 U.S. CISOs. Key findings: 67% lack visibility into AI usage, 44% report lagging AI security, and major challenges include expertise shortages and reliance on outdated security controls. Despite funding for AI security, it lacks dedicated budgets, highlighting significant gaps in securing evolving AI systems amidst complex IT environments.

https://www.prnewswire.com/il/news-releases/ai-is-spreading-faster-than-companies-can-secure-it-ciso-survey-finds-302691361.html

Data Minimization Is Still an Underrated Security Control

Data minimization is an underrated security control that reduces the volume of sensitive data, thereby decreasing the impact of breaches and improving security operations. Despite organizations claiming to practice data minimization, the sheer volume of data often outpaces governance capabilities, thereby increasing risk. To effectively implement data minimization, organizations must challenge the “speculative” analytics mindset, audit data propagation, and automate retention processes.

https://www.databreachtoday.com/blogs/data-minimization-still-underrated-security-control-p-4049

When AI Agents Pay: Who Owns the Compliance Liability?

AI agents in commerce raise complex compliance issues regarding transactional liability. With their adoption accelerating, traditional regulatory frameworks (such as PCI DSS, AML, and DORA) may struggle to keep pace, as compliance is hard to assign when AIs initiate payments. Financial institutions must proactively assess their compliance strategies for AI interactions to avoid future liability risks, particularly around transaction monitoring, script security, and operational resilience. Immediate steps include mapping integrations and recalibrating AML systems. Delayed action may lead to regulatory crises as compliance standards evolve.

https://www.finextra.com/blogposting/30917/when-ai-agents-pay-who-owns-the-compliance-liability

From Innovation to Regulation: How Internal Audit Must Respond to the EU AI Act

The EU AI Act, a global standard for AI regulation, requires organizations worldwide to address AI risks through governance, controls, and accountability. Internal auditors must adapt to this shift, auditing AI governance, risk classification, data quality, human oversight, and third-party AI risk to ensure compliance.

https://www.wolterskluwer.com/en/expert-insights/innovation-regulation-how-internal-audit-must-respond-eu-ai-act

We Gave the CISO Risk and Liability, and Now They Want Authority. The Nerve.

CISO roles face responsibility without authority, causing tension. Accountability exists but not equivalent decision-making power. Discussions include CISOs as risk advisors, the persistence of outdated security practices, and redefining employees from weakest links to strong allies. Experts stress the importance of adapting to new cybersecurity landscapes, emphasizing communication's role in enhancing security culture. Additionally, participants debate the severity of security breaches in public utilities versus logistics, ultimately favoring water supply threats as more impactful due to health implications.

https://cisoseries.com/we-gave-the-ciso-risk-and-liability-and-now-they-want-authority-the-nerve/

Scroll to Top