Pith. sign in

REVIEW 1 cited by

Systemic Risk and Vulnerability Analysis of Multi-cloud Environments

Not yet reviewed by Pith; the record is open.

This paper has not been read by Pith yet. Machine review is queued; the pith claim, tier, and objections will appear here once it completes.

SPECIMEN: schema-true, not a live event

T0 review · schema-true

One-sentence machine reading of the paper's core claim.

pith:XXXXXXXX · record.json · timestamp

arxiv 2306.01862 v2 pith:6SGFU4JZ submitted 2023-06-02 cs.CR

classification cs.CR
keywords multi-cloudenvironmentssecurityanalysisattackvectorsvulnerabilitymanagement
verification ladder T0 review T1 audit T2 compute T3 formal
0 comments
read the original abstract

With the increasing use of multi-cloud environments, security professionals face challenges in configuration, management, and integration due to uneven security capabilities and features among providers. As a result, a fragmented approach toward security has been observed, leading to new attack vectors and potential vulnerabilities. Other research has focused on single-cloud platforms or specific applications of multi-cloud environments. Therefore, there is a need for a holistic security and vulnerability assessment and defense strategy that applies to multi-cloud platforms. We perform a risk and vulnerability analysis to identify attack vectors from software, hardware, and the network, as well as interoperability security issues in multi-cloud environments. Applying the STRIDE and DREAD threat modeling methods, we present an analysis of the ecosystem across six attack vectors: cloud architecture, APIs, authentication, automation, management differences, and cybersecurity legislation. We quantitatively determine and rank the threats in multi-cloud environments and suggest mitigation strategies.

Discussion (0). Continue with ORCID to comment.

Forward citations

Cited by 1 Pith paper

Reviewed papers in the Pith corpus that reference this work. Sorted by Pith novelty score. Full citation record

  1. Cloud failure and cyber insurance: calibration of stress scenarios and diversification

    q-fin.RM 2026-07 conditional novelty 5.0 of 10

    A two-regime cyber-insurance model balances ordinary-loss volatility against cloud-outage accumulation risk and produces provider-level underwriting targets.

Pith tools