SilverLining Episode 56: Researching Cloud giants security mechanisms

Episode 56 December 21, 2022 00:23:28
SilverLining Episode 56: Researching Cloud giants security mechanisms
SilverLining IL
SilverLining Episode 56: Researching Cloud giants security mechanisms

Dec 21 2022 | 00:23:28

/

Hosted By

Moshe Ferber Ariel Munafo

Show Notes

Guest: Vladi Sandler, Co-Founder & CEO, Gafnit Amiga, VP of Research, Lightspin

Topic: Researching Cloud giants security mechanisms 

Language: English

 

Abstract

The leading cloud providers these days are storing growing parts of human knowledge and businesses , and therefore their services require to be top notch in security and most of the time, they actually provide very resilient security services. But every now and then, a talented security researcher finds vulnerabilities even on the most mature services - In this episode we spoke with Vladi Sandler & Gafnit Amiga from Lightspin regarding the AWS RDS vulnerability they recently discovered and what is the process of researching cloud provider vulnerabilities and how to do responsible disclosure.  As a bonus, we also discussed the open-source tools released by Lightspin and the way they can help organizations protect their cloud resources.

 

https://blog.lightspin.io/aws-rds-critical-security-vulnerability

https://recon.cloud  -  Free CNAPP tool

https://github.com/lightspin-tech/red-detector - EC2 vulnerability scanner 

https://github.com/lightspin-tech/red-kube - K8S Adversary Emulation

Other Episodes

Episode 10

November 24, 2019 00:30:24
Episode Cover

Episode 10: Securing The New Fintech Economy

Attendees Guest: Nir Valtman Guest title:  Product security lead Company:  Finastra Abstract Fintech companies drive cloud security forward by setting the highest bar of...

Listen

Episode 37

April 13, 2021 00:27:16
Episode Cover

SilverLining Episode 37: Software Package Dependencies Attacks

Attendees Guest: Tzachi Zornstain Guest Title: Co-Founder & CEO, Dustico Topic: Software Package Dependencies Attacks Abstract Supply chain and software dependencies attacks are becoming...

Listen

Episode 7

September 02, 2019 00:36:26
Episode Cover

Episode 7: Creating Trust in Cloud

Attendees Guest: Damir Savanović Guest title: Senior researcher Company: Cloud Security Alliance Abstract Creating trust is one of the major challenges for cloud providers...

Listen