This paper reviews over 120 security publications from 2008 to 2025, focusing on how these isolation boundaries can be breached, and introduces a quantitative scoring framework called ADPO, which rates defenses from 0 to 3 based on their Accuracy, Deployment ease, Performance impact, and Operational overhead.
Abstract
In cloud computing, different users share the same physical hardware, which creates serious security risks. To protect data, cloud systems rely on virtual machines and containers to keep users isolated. This paper reviews over 120 security publications from 2008 to 2025, focusing on how these isolation boundaries can be breached. We examine threats like virtual machine escape, virtual machine hopping, CPU cache side-channels, container breakouts, vulnerable container images, and distributed denial of service (DDoS) attacks. We evaluate these security threats and their defenses using three key research questions. To compare different defense systems, we introduce a quantitative scoring framework called ADPO, which rates defenses from 0 to 3 based on their Accuracy, Deployment ease, Performance impact, and Operational overhead. We also map the impact of these attacks onto a 1-to-5 severity scale for Confidentiality, Integrity, and Availability. Finally, we highlight the trade-offs between security and system performance, and we outline open challenges like building low-overhead intrusion detection and creating realistic test datasets.
This work presents the first large-scale, systematic analysis of default security weaknesses across cloud providers and reveals substantial variation in default security postures, high-light the need for increased transparency and standardization in default cloud security practices.
This study examines the evolving security landscape of serverless computing, specifically focusing on AWS Lambda and Google Cloud Functions. While serverless architectures offer significant scalability and cost advantages, their event-driven nature introduces unique vulnerabilities that traditional infrastructure-based...
Norsyazwani Mohd Puad, Paiwand Hadi Hama Saeed, Braw Araz Mohammed et al.· Journal of Applied Computer...· 0 citations
Secure Resource Management (SRM) is crucial in cloud computing environments that share resources across virtual machines (VMs) and have potential attack surfaces for malicious actions. A lack of use of resources may compromise system integrity and lead to undesirable access. To address this problem, threat countermeasu...
Sai Pranay Teja, P. Supriya· Adolescência e Saúde· 0 citations
R resilience in remote-access VPNs should be interpreted as a system-level property emerging from the interaction of implementation architecture, endpoint characteristics, and deployment conditions, underline that resilience in remote-access VPNs should be interpreted as a system-level property emerging from the intera...
Rene Forsung, R. Pirmagomedov, A. Mezina et al.· Cryptography· 0 citations
This paper presents an analytical study of storage security techniques in IaaS environments and examines the main threats that may affect data hosted in the cloud, including unauthorized access, misconfigurations, insider threats, and cyber attacks.
Yahaya Coulibaly, Ouedraogo Paloute Karim Charlemagne, Ouedraogo Yann Christian Florian et al.· International Journal of Lat...· 0 citations
As cloud computing continues to grow and become integral to business operations, securing cloud environments has emerged as a critical concern. This paper explores the multifaceted challenges of cloud security and proposes solutions to mitigate these risks. We discuss the inherent vulnerabilities of cloud infrastructur...