Amazon Says Customers Have to Secure Own Data on AWS

Cybersecurity researchers say data hosted on AWS servers is often accidentally exposed due to mistakes made by the company's clients configuring their security settings.

Advertisement
By Reuters | Updated: 6 November 2019 11:19 IST
Highlights
  • US lawmakers had accused that Amazon has not done enough to secure data
  • AWS has come under fire following a series of high-profile data breaches
  • We have a responsibility in making sure you take right actions: Amazon

Amazon's cloud computing customers have to decide themselves how best to protect sensitive information online, a senior executive said on Tuesday, following accusations by US lawmakers that the Web giant has not done enough to secure data on its servers. Amazon Web Services (AWS), the cloud computing arm of Amazon.com, has come under fire following a series of high-profile data breaches, including one this year involving the personal information of 106 million people stored on its servers by Capital One Financial.

Chief Technology Officer Werner Vogels said AWS provided multiple services to help customers identify if their data was being stored appropriately and flag any possible problems, but the decision about which settings to use lay with those clients.

Advertisement

"We feel we have a responsibility in making sure you take the right actions, but in the end it's only you who can decide what is the right action there and what's not," he told Reuters on the sidelines of the Web Summit tech conference in Lisbon.

"I'm not going to look at your data thinking like 'hey, these are cat videos, maybe you shouldn't do that'." He added that customers should use tighter security controls for sensitive data such as credit card information.

Advertisement

Cyber-security researchers say data hosted on AWS servers is often accidentally exposed due to mistakes made by the company's clients configuring their security settings.

The alleged Capital One hacker, for example, was able to access the firm's data due to a wrongly-configured Web application firewall, US prosecutors have said.

Advertisement

Analysts at Gartner predict client mistakes will account for 99 percent of "cloud security failures" over the next six years.

Vogels said the AWS system warned customers with a "massive red button" when they configured online storage containers - known as buckets - to be accessible by anyone online, a setting deliberately chosen for some products and applications.

Advertisement

The company also provides tools which clients can run to analyse the type of data they are storing and spot commonly associated slip-ups, he said.

"If you (change) the configuration on your bucket to world-readable, you will get lots of alarm bells going off," he said. "It's up to the individual customer to decide what's right and what's wrong."

© Thomson Reuters 2019

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Amazon, AWS, Capital One
Advertisement

Related Stories

Popular Mobile Brands
  1. Best Phones Under Rs. 70,000 With Telephoto Cameras in India
  2. Samsung Galaxy S26 FE vs Oppo Find X9s vs Vivo V70 Elite Compared
  3. How to Change Jio Prepaid Plan: A Step-by-Step Guide
  1. Magic Eden Investigates Possible Exploit After NFTs Move for 0 ETH
  2. Amazon Great Indian Festival 2026: Early Deals Are Now Live on OnePlus N6x, iQOO Z10 Lite 5G, and More
  3. Marking 12 Years of Make in India, Gov't Targets the Brains Inside Our Smartphones
  4. Google Photos Update Brings Redact Tool, Moods and AI Wardrobe
  5. Halo Studios Reportedly Has Around 30 Employees Left After Layoffs as Activision Takes Charge of Franchise
  6. KelpDAO Sues LayerZero Over $292 Million rsETH Exploit, Claims Bridge Risks Were Not Disclosed
  7. OpenAI Plans to Launch a New Cybersecurity-Focused GPT-6 Series AI Model: Report
  8. Vivo V80 Price in India Leaked Ahead of October 6 Launch: What You Need to Know
  9. Infinix GT NX Controller With Pixel-Level FPS Touchpad, GT NX Station Cooling Dock Unveiled
  10. Bitget Suffers $351.6 Million Security Breach, Exchange Says No Private Keys Were Leaked
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.