Cloud Provider Trust

Discussions center on the trustworthiness and security of major cloud providers like AWS, Azure, and Google Cloud, including concerns about compromises, government access, and whether to rely on them for sensitive data versus on-premises alternatives.

➡️ Stable 0.5x Security
3,307
Comments
19
Years Active
5
Top Authors
#6303
Topic ID

Activity Over Time

2008
10
2009
24
2010
36
2011
56
2012
60
2013
137
2014
118
2015
107
2016
131
2017
185
2018
205
2019
214
2020
318
2021
354
2022
310
2023
362
2024
324
2025
343
2026
13

Keywords

MS US S3 BS RDS F5 AWS AND SDN XP cloud aws cloud provider azure provider trust security data compromised customers

Sample Comments

superuser2 Feb 9, 2016 View on HN

Why do you believe non-American cloud providers aren't compromised?

metadat Jul 6, 2022 View on HN

Unless it's your own cloud, don't trust it with the crown jewels.

openplatypus Jun 3, 2025 View on HN

Smoke and mirrors. As long as they remain subsidiary of AWS in US no level of protection will be sufficient.MS tried same with their Azure.This BS on another level.

saltyhiker Sep 2, 2016 View on HN

What popular cloud providers are vulnerable?

willvarfar Sep 2, 2016 View on HN

Perhaps we need more certainty than just "think"?That AWS don't boast that they are not susceptible to this suggests that perhaps at least some of their setup is?

swexbe May 27, 2023 View on HN

Just like you have to trust AWS/Azure and any SAAS service in existence.

minot Oct 14, 2020 View on HN

Absolutely. If you go by the marketing, all of aws staff is now potentially working for you when you use aws. You could say this means if any of the aws employees is compromised, so are you.As a contractor, all my code goes through a code review from one of the employees. I only have access to the development environment (even qa is off limits except the publicly available stuff). It is all on azure though. I think it is fine for must work done by peons like me.I once used an application t

benblack Nov 9, 2010 View on HN

That certain services can't yet be moved to AWS is not an an indicator AWS is compromised. Several services, for example the payments infrastructure, are subject to regulations that make it challenging to implement _at all_, much less in a shared environment like AWS. Again, this is not an argument that AWS is compromised, and teams at Amazon are absolutely using AWS.

varunjain99 Mar 30, 2023 View on HN

All the more reason to not rely on the cloud provider itself as your security vendor, I suppose...

staticassertion Jun 19, 2020 View on HN

It's gonna depend on your threat model ultimately. Hard to imagine running on AWS if you don't trust them though.