🔖 Data exfiltration with native AWS S3 features
A deep dive on different options for abuse of legitimate S3 features with the end goal of data exfiltration, so to better understand the shortcomings of native AWS logging and monitoring tooling.
bleemb.medium.com/data-exfiltrat…
Put some time into understanding what the implications of using certain s3 features for data exfiltration are - with a focus on how they can be detected. bleemb.medium.com/data-exfiltrat…
Risky Business News is nearing launch! @campuscodi published an example RBN newsletter yesterday. This one is just a proof of concept to see how well the format works. The plan is to publish one of these, with an accompanying podcast, three times a week.
riskybiznews.substack.com/p/risky-biz-ne…
GitHub has uncovered evidence that an attacker abused stolen OAuth user tokens issued to two third-party OAuth integrators, Heroku and Travis-CI. Read more about the impact to GitHub, npm, and our users. github.blog/2022-04-15-sec…
Hopefully the first of many! If you haven't checked it out already, hackingthe.cloud is a collection of offensive techniques that can be used against CSPs.
Hopefully the first of many! If you haven't checked it out already, hackingthe.cloud is a collection of offensive techniques that can be used against CSPs.
The "A least privilege journey: AWS IAM policies and Access Analyzer" talk at Re:Invent feels like mandatory viewing for anyone building in AWS. Some good foundational IAM coverage along with some solid tips and shout outs for new features over the last year.
Great to see AWS coming out with a cli tool for parsing cloudformation for analysis by the IAM policy validator at run time. github.com/awslabs/aws-cl…
For anyone interested in the AWS security space, some really interesting research from the team at Hunters - on controlling the source IP addresses that appear in Cloudtrail logs using VPC endpoints. hunters.ai/blog/hunters-r…
I was sure there had to be an easter egg in this background during Gavin Belson's announcement of the Signature Box III... Well, touché. 🥲😂 #SiliconValley
74 Followers 2K FollowingStay safe from cyber threats with our cybersecurity blog. Get the latest updates on data protection, online privacy, and digital security.
2K Followers 2K FollowingHead of Intelligence R&D at NetWitness. Co-founder of Unit 42 - Palo Alto Networks and NCIJTF, co-creator of ATT&CK, USAF vet. She/Her.
2K Followers 3K FollowingVP Product at SentinelOne. x-AWS. Co-founder of threat hunting startup, Sqrrl (acquired by AWS); x-Dir of Cybersecurity at White House
1K Followers 4K FollowingDedicated cheap skater who keeps data. I do cloudy stuff and things. Cloud Security Forum moderator and a fwd:cloudsec organizer
1K Followers 583 Followingbomboclat. Former “Voice of the Researcher” at Amazon Web Services. Current "Baddie Basher" at @vultr. Views/opinions are my own.
573 Followers 2K FollowingCloud assessments in no time. No agents. Find the hidden attack paths and lateral movement opportunities in any cloud.
For Consultants, MSPs, MSSPs, SOC.
653 Followers 1K FollowingCloud security researcher at CrowdStrike, European Universities Debating Champion. My 5th grade teacher said I was disruptive.
109 Followers 60 FollowingNightVision simplifies Web and API Security Testing with next-generation DAST Developers can identify ✨exploitable✨ vulnerabilities in 3-5 minutes in CI/CD 🚀
1K Followers 822 FollowingGlobal Head of Research @ WithSecure, Programme Lead @ fwd:cloudsec EU. AWS/cloud security, automation, DevOps and attack detection. Opinions are my own.
222K Followers 386 Following• App Economy investor
• French in Silicon Valley
• Gaming industry veteran
• Previously @PwC & @BandaiNamcoUS
• 200K+ read my newsletter How They Make Money
132K Followers 57 FollowingProviding intel from the Dark Web & Clearnet: Breaches, Ransomware, Darknet Markets, Threats, Crypto & more. Follow X Bot: @DarkWebIntelBot https://t.co/Fi7VW9lg94
27K Followers 1K FollowingInvestor. Business person. CIO @themotleyfoolau. Director @cityrecitalhall
Here for nuanced policy discussion and observations, not cheerleading. And some fun!
126K Followers 1K FollowingPrincipal Engineer at Google. Bettering Gemini model serving infra, bettering APIs. Simplicity and optimism. Personal opinions.
241K Followers 1K FollowingCreator of @haveibeenpwned. Microsoft Regional Director. Pluralsight author. Online security, technology and “The Cloud”. Australian.
41K Followers 9K FollowingInformation security - #SIEM, #DFIR, #EDR formerly at Gartner! Now @GoogleCloud Office of the #CISO; host of @CloudSecPodcast https://t.co/VpKtfz8nXG
844 Followers 52 FollowingSr PM Google Cloud Security, co-host @cloudsecpodcast. Reducing info risk, increasing physical risk w/ motorcycles and skis. It should just work. (he/him)🏳️🌈
13K Followers 282 FollowingThe leading MDR provider trusted by some of the world’s most renowned brands to expel adversaries, minimize risk, & build security resilience. https://t.co/uTjUcRDveB
38K Followers 5K FollowingDFIR | Violinist |
Former medical/vet tech | I work for everyone and no one. Infosec retellings obfuscated. Salty and tired.
Also Litmoose on BlueSky
2K Followers 2K FollowingHead of Intelligence R&D at NetWitness. Co-founder of Unit 42 - Palo Alto Networks and NCIJTF, co-creator of ATT&CK, USAF vet. She/Her.
62K Followers 805 FollowingSecurity Researcher. Previously Google Project Zero and TAG | 0days all day. Love all things bytes, assembly, and glitter. she/her.
87K Followers 508 FollowingFounder & CEO of runZero (@runZeroInc), previously the founder and lead developer of Metasploit, a CSO, a consultant, and the head of various research teams.
3K Followers 113 Following#threatintelligence bot tweeting latest Common Vulnerabilities and Exposures published or modified today in realtime from @NISTCyber.
632K Followers 210 FollowingCzar for life of all Russians. Master Strategist. Tea connoisseur. Window installer. Author. YouTuber. Wanted in 123 countries. Parody, apparently.
1K Followers 649 FollowingProduct Security Lead - AWS Cloud at JPMC. Worked on security teams at Netflix, Google, Facebook, Snap, Lyft and Mapbox! Opinions are my own, not my employer's