• Live Feeds
    • Press Releases
    • Insider Trading
    • FDA Approvals
    • Analyst Ratings
    • Insider Trading
    • SEC filings
    • Market insights
  • Analyst Ratings
  • Alerts
  • Subscriptions
  • Settings
  • RSS Feeds
Quantisnow Logo
  • Live Feeds
    • Press Releases
    • Insider Trading
    • FDA Approvals
    • Analyst Ratings
    • Insider Trading
    • SEC filings
    • Market insights
  • Analyst Ratings
  • Alerts
  • Subscriptions
  • Settings
  • RSS Feeds
PublishDashboard
    Quantisnow Logo

    © 2025 quantisnow.com
    Democratizing insights since 2022

    Services
    Live news feedsRSS FeedsAlertsPublish with Us
    Company
    AboutQuantisnow PlusContactJobsAI employees
    Legal
    Terms of usePrivacy policyCookie policy

    Tenable Research Finds Pervasive Cloud Misconfigurations Exposing Critical Data and Secrets

    6/18/25 9:00:00 AM ET
    $TENB
    Computer Software: Prepackaged Software
    Technology
    Get the next $TENB alert in real time by email

    COLUMBIA, Md., June 18, 2025 (GLOBE NEWSWIRE) -- Tenable®, the exposure management company, today released its 2025 Cloud Security Risk Report. The research revealed that 9% of publicly accessible cloud storage contains sensitive data, 97% of which is classified as restricted or confidential. These exposures increase the risk of exploitation, particularly when paired with misconfigurations or embedded secrets.

    Cloud environments face dramatically increased risk due to exposed sensitive data, misconfigurations, underlying vulnerabilities and poorly stored secrets – such as passwords, API keys and credentials. The 2025 Cloud Security Risk Report provides a deep dive into the most prominent cloud security issues impacting data, identity, workload and AI resources and offers practical mitigation strategies to help organizations proactively reduce risk and close critical gaps.

    Key findings from the report include:

    • Secrets found in diverse cloud resources are putting organizations at risk: Over half of organizations (54%) store at least one secret directly in Amazon Web Services (AWS) Elastic Container Service (ECS) task definitions — creating a direct attack path. Similar issues were found among organizations using Google Cloud Platform (GCP) Cloud Run (52%) and Microsoft Azure Logic Apps workflows (31%). Alarmingly, 3.5% of all AWS Elastic Compute Cloud (EC2) instances contain secrets in user data — major risk given how widely EC2 is used.
    • Cloud workload security is improving, but toxic combinations persist: While the number of organizations with a "toxic cloud trilogy" – a workload that is publicly exposed, critically vulnerable, and highly privileged – has decreased from 38% to 29%, this dangerous combination still represents a significant and common risk.
    • Using Identity Providers (IdPs) alone doesn't eliminate risk: While 83% of AWS organizations are exercising best practices in using IdP services to manage their cloud identities, overly-permissive defaults, excessive entitlements, and standing permissions still expose them to identity-based threats.

    "Despite the security incidents we have witnessed over the past few years, organizations continue to leave critical cloud assets, from sensitive data to secrets, exposed through avoidable misconfigurations," said Ari Eitan, Director of Cloud Security Research, Tenable.

    "The path for attackers is often simple: exploit public access, steal embedded secrets or abuse overprivileged identities. To close these gaps, security teams need full visibility across their environments and the ability to prioritize and automate remediation before threats escalate. The cloud demands continuous, proactive risk management, and not reactive patchwork."

    The report reflects findings by the Tenable Cloud Research team based on telemetry from workloads across diverse public cloud and enterprise environments, analyzed from October 2024 through March 2025. To download the report today, please visit: https://www.tenable.com/cyber-exposure/tenable-cloud-security-risk-report-2025

    More information on Tenable Cloud Security is available at: https://www.tenable.com/cloud-security.

    About Tenable

    Tenable® is the exposure management company, exposing and closing the cybersecurity gaps that erode business value, reputation and trust. The company's AI-powered exposure management platform radically unifies security visibility, insight and action across the attack surface, equipping modern organizations to protect against attacks from IT infrastructure to cloud environments to critical infrastructure and everywhere in between. By protecting enterprises from security exposure, Tenable reduces business risk for more than 44,000 customers around the globe. Learn more at tenable.com.

    Media Contact:

    Tenable

    [email protected]



    Primary Logo

    Get the next $TENB alert in real time by email

    Chat with this insight

    Save time and jump to the most important pieces.

    Recent Analyst Ratings for
    $TENB

    DatePrice TargetRatingAnalyst
    4/1/2025$42.00Equal-Weight
    Stephens
    3/31/2025$50.00Overweight
    Cantor Fitzgerald
    3/18/2025Equal-Weight
    Morgan Stanley
    1/17/2025$46.00 → $45.00Buy → Hold
    Stifel
    12/2/2024$47.00Overweight → Equal-Weight
    Morgan Stanley
    10/16/2024$45.00Hold
    Jefferies
    8/1/2024$56.00 → $40.00Buy → Neutral
    DA Davidson
    7/15/2024$55.00Outperform
    Robert W. Baird
    More analyst ratings

    $TENB
    SEC Filings

    See more
    • SEC Form 144 filed by Tenable Holdings Inc.

      144 - Tenable Holdings, Inc. (0001660280) (Subject)

      5/27/25 3:48:41 PM ET
      $TENB
      Computer Software: Prepackaged Software
      Technology
    • SEC Form 144 filed by Tenable Holdings Inc.

      144 - Tenable Holdings, Inc. (0001660280) (Subject)

      5/27/25 3:35:06 PM ET
      $TENB
      Computer Software: Prepackaged Software
      Technology
    • SEC Form 144 filed by Tenable Holdings Inc.

      144 - Tenable Holdings, Inc. (0001660280) (Subject)

      5/27/25 3:29:02 PM ET
      $TENB
      Computer Software: Prepackaged Software
      Technology

    $TENB
    Leadership Updates

    Live Leadership Updates

    See more
    • Tenable Announces Intent to Acquire Apex Security to Expand Exposure Management Across the AI Attack Surface

      COLUMBIA, Md., May 29, 2025 (GLOBE NEWSWIRE) -- Tenable® Holdings, Inc., the exposure management company, today announced its intent to acquire Apex Security, Inc., an innovator in securing the rapidly expanding AI attack surface. Tenable believes the acquisition, once completed, will strengthen Tenable's ability to help organizations identify and reduce cyber risk in a world increasingly shaped by artificial intelligence. Generative AI tools and autonomous systems are rapidly expanding the attack surface and introducing new risks — from shadow AI apps and AI-generated code to synthetic identities and ungoverned cloud services. In 2024, Tenable launched Tenable AI Aware which already help

      5/29/25 9:00:00 AM ET
      $TENB
      Computer Software: Prepackaged Software
      Technology
    • Tenable Appoints Eric Doerr as Chief Product Officer

      COLUMBIA, Md., April 29, 2025 (GLOBE NEWSWIRE) -- Tenable®, the exposure management company, today announced the appointment of Eric Doerr as Chief Product Officer (CPO). Doerr brings nearly three decades of experience building and scaling security products at some of the world's most respected technology companies, including Microsoft and, most recently, Google Cloud. At Tenable, Doerr will lead the company's global product organization, overseeing strategy, innovation and execution across its growing cybersecurity portfolio. His appointment comes at a pivotal moment, as Tenable prepares to launch a significantly expanded version of its Tenable One platform—designed to deliver the most c

      4/29/25 9:00:00 AM ET
      $TENB
      Computer Software: Prepackaged Software
      Technology
    • Tenable Appoints Steve Vintz and Mark Thurmond as Co-CEOs

      COLUMBIA, Md., April 16, 2025 (GLOBE NEWSWIRE) -- Tenable®, the exposure management company, today announced that its Board of Directors has unanimously appointed Steve Vintz and Mark Thurmond as co-Chief Executive Officers on a permanent basis. Following an extensive search process that considered both internal and external candidates, the Board concluded that Vintz and Thurmond are best positioned to move the company forward. The decision reflects the Board's confidence in the strength of their leadership following a successful interim period during which they drove significant operational and strategic momentum. The Board also intends to appoint Vintz and Thurmond to the Board immediate

      4/16/25 9:00:00 AM ET
      $TENB
      Computer Software: Prepackaged Software
      Technology