Cloud Security Blog – Week 50

React2Shell [CVE-2025-55182 ]

To tie the knots Dec 5th CloudFlare outage was due to the implementation of the mitigation of the CVE-2025-55182 [Link]

  • MITRE ATT&CK Evaluations Enterprise Round 7 (ER7), released in December 2025, tested security products against emulated attacks mimicking Scattered Spider (eCrime group with cloud-centric tactics) and Mustang Panda (Chinese state-sponsored espionage) [Link]

AI Security

  • Prompt Injection via MCP sampling [Link]
  • OWASP Top 10 for Agentic Applications 2026 was released on Dec 9th [Link]

Leave a comment

I’m Ara

Welcome to Cloud Security Blog, my corner of the internet dedicated to Cloud and AI Security .

Let’s connect