ShutterGap: Aryon Security finds 3.7M AWS cloud resources exposed beyond CSPM/CNAPP visibility
Research from Aryon reveals that each year, 3,731,699 short-lived cloud resources containing highly sensitive information are publicly exposed.

.webp)
Ariel Litmanovich is Co-Founder & CTO of Aryon Security, the Cloud Security Enforcement Platform that prevents cloud risks by enforcing policy before deployment. At Matzov, the IDF's elite cybersecurity unit, he led the military's transition to the cloud and designed its secure cloud infrastructure.

Head of Research at Aryon, specializing in cloud security, preventive cloud security research & solution engineering, and the development of advanced defensive solutions. Before joining Aryon, he held research and leadership roles within IDF’s MATZOV unit. He contributed to major national defense initiatives.
Continue reading

Cloud ShutterGap: Millions of Cloud Resources Exposed - The Blind Spot CSPM/CNAPP Tools Don’t Cover
Aryon's research reveals millions of misconfigured ephemeral cloud resources, publicly exposed for only moments before being removed. Often, these exposures last only a few minutes, long enough for attackers to discover and exploit them, but too short for traditional CSPM and CNAPP tools to detect. Many of these resources contain highly sensitive information.
The Missing Link Between Security and Operation: Bringing Security Policy into the Moment of Deployment
In cloud environments, security and operations often meet too late. Security teams define the policies, best practices, compliance requirements, threat models, and risk tolerance that should guide how cloud resources are configured. DevOps and IT teams apply those decisions in practice as they create, configure, and change cloud resources every day.
A Year of Proof: Why Prevention is the Only Path Forward
As we close the chapter on 2025, we find ourselves reflecting on a year shaped by three powerful forces: curiosity that pushed boundaries, relentless execution that turned ideas into impact, and, above all, operational proof that our approach works.
Beyond the Alert: A Pragmatic Roadmap to Cloud Security Maturity Model (CSMM)
Cloud security has a fundamental structural problem, and most organizations are only beginning to fully recognize it. Despite significant investment in tooling and talent, security teams remain perpetually reactive, identifying misconfigurations after they have already reached production, triaging growing volumes of alerts, and working to remediate risks that have already existed in a potentially exploitable state, following the CSMM Model can change things around.
Tackling Cloud Complexity with Proactive Security
“The cloud is just someone else’s computer.” It’s a funny saying that oversimplifies what cloud computing really means. In reality, anyone who has dealt with cloud security knows the cloud is far more complex than just renting another person’s server.