Skip to content

Nephology: Characterizing the Security of Base Images across Cloud Providers

· 0 citations · 23 references

TL;DR

This work presents the first large-scale, systematic analysis of default security weaknesses across cloud providers and reveals substantial variation in default security postures, high-light the need for increased transparency and standardization in default cloud security practices.

View source

Similar papers

Review Sep 2026

From Hypervisor to Container: Cloud Security Vulnerabilities, Defense Mechanisms, and Open Challenges

This paper reviews over 120 security publications from 2008 to 2025, focusing on how these isolation boundaries can be breached, and introduces a quantitative scoring framework called ADPO, which rates defenses from 0 to 3 based on their Accuracy, Deployment ease, Performance impact, and Operational overhead.

Swapnil Vishwas Baviskar, R. Sanoj, Hiran V. Nath · 0 citations
Open access Aug 2026

Security challenges in serverless architectures: Vulnerabilities and penetration testing approaches for AWS Lambda and Google Cloud Functions

This study examines the evolving security landscape of serverless computing, specifically focusing on AWS Lambda and Google Cloud Functions. While serverless architectures offer significant scalability and cost advantages, their event-driven nature introduces unique vulnerabilities that traditional infrastructure-based...

Norsyazwani Mohd Puad, Paiwand Hadi Hama Saeed, Braw Araz Mohammed et al. · 0 citations
Open access Aug 2026

Cloud in the crosshairs: exposing vulnerabilities in web-based management interfaces of open-source IaaS platforms

This study conducts a large-scale empirical security analysis of the web-based management interfaces of ten widely used open-source Infrastructure-as-a-Service (IaaS) platforms, identifying 16 vulnerabilities spanning nine classes, including high-severity flaws that enable account takeover.

Alexandros Perrakis, Efstratios Chatzoglou, Vyron Kampourakis et al. · 0 citations
Preprint Aug 2026

Improving the Security of Containerized Workloads using Transparency and Traceability Services

This paper presents an architecture for verifiable container image distribution that addresses key-management challenges and enables policy-enforced admission-time verification, and implements a proof-of-concept integrated with GitHub Actions and GitLab Runners that mitigates common supply-chain attacks under a realist...

N. Fotiou, Lefteris Georgiadis, Ignacio Lacalle et al. · 0 citations
Review Jul 2026

Exposed by Design: A Dynamic Security Assessment of Internet-Facing MCP Servers at Scale

It is found that 91.8% of dynamically audited servers lack OAuth authentication, 687 tool instances across confirmed servers expose shell execution capabilities without access controls, and 41.6% of confirmed servers disappear within three days between consecutive measurement runs---indicating rapid deployment cycles w...

Nicolás Padilla · 1 citation · ⚡1
Open access Aug 2026

Efficiency and Security Analysis of Self-Hosted Cloud Storage: A Containerized ZTNA, Docker, and PostgreSQL Approach

A secure, containerized self-hosted cloud architecture integrating Nextcloud, PostgreSQL, and Docker, secured via a Zero Trust Network Access (ZTNA) tunnel to achieve a "Closed-Default" security posture is proposed.

Zen Aufa Bahalwan, Arry Avorizano · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.