Some major companies are being targeted in this dangerous new cybercrime campaign

Experts warn that poor cybersecurity, including exposed environment variable files, long-lived credentials and the lack of a least-privilege architecture, have led to multiple organizations becoming targets of ransomware attacks.

A report Cybersecurity researchers from Unit 42 outlined how they observed a successful cloud extortion campaign that leveraged exposed environment variable (.ENV) files containing sensitive data such as login credentials.