SilverLining Episode 56: Researching Cloud giants security mechanisms

Episode 56 December 21, 2022 00:23:28
SilverLining Episode 56: Researching Cloud giants security mechanisms
SilverLining IL
SilverLining Episode 56: Researching Cloud giants security mechanisms

Dec 21 2022 | 00:23:28

/

Hosted By

Moshe Ferber Ariel Munafo

Show Notes

Guest: Vladi Sandler, Co-Founder & CEO, Gafnit Amiga, VP of Research, Lightspin

Topic: Researching Cloud giants security mechanisms 

Language: English

 

Abstract

The leading cloud providers these days are storing growing parts of human knowledge and businesses , and therefore their services require to be top notch in security and most of the time, they actually provide very resilient security services. But every now and then, a talented security researcher finds vulnerabilities even on the most mature services - In this episode we spoke with Vladi Sandler & Gafnit Amiga from Lightspin regarding the AWS RDS vulnerability they recently discovered and what is the process of researching cloud provider vulnerabilities and how to do responsible disclosure.  As a bonus, we also discussed the open-source tools released by Lightspin and the way they can help organizations protect their cloud resources.

 

https://blog.lightspin.io/aws-rds-critical-security-vulnerability

https://recon.cloud  -  Free CNAPP tool

https://github.com/lightspin-tech/red-detector - EC2 vulnerability scanner 

https://github.com/lightspin-tech/red-kube - K8S Adversary Emulation

Other Episodes

Episode 33

January 18, 2021 00:31:24
Episode Cover

Episode 33: Researching Cloud Vulnerabilities

Attendees Guest: Asaf Hecht  Guest Title: Security research team leader Company: CyberArk  Abstract With the growth of cloud services, more knowledge is gathered on...

Listen

Episode 17

August 02, 2020 00:37:03
Episode Cover

Episode 17: How to do penetration testing in cloud application

Attendees Guest: Oz Avenstein Guest Title:  Founder Company:  Avensec Abstract Penetration tests are one of the strongest controls that we use. It is testing...

Listen

Episode 57

January 25, 2023 00:27:38
Episode Cover

SilverLining Episode 57: How CISO’s should utilize cyber security startups

Guest: Shahar Geiger Maor Guest Title:  CISO at DarioHealth Language: English   Abstract Many of the CISOs are often approached by early stage startups asking...

Listen