Episode 19: Understanding Cloud Attack Vectors episode artwork

EPISODE · Aug 2, 2020 · 40 MIN

Episode 19: Understanding Cloud Attack Vectors

from SilverLining IL · host MarkeTech Group

Attendees Guest: Or Kamara Guest Title:  Senior team lead  Company:  Synk Abstract Cloud computing can bring interesting and new attack vectors. In this episode, we talk with Or Kamara, Senior team lead at Synk, about the Capital-one hacking and what can be learned from the event in order to better protect our networks. We will analyze the attack step by step and add mitigating controls that can help in preventing the next attack. Timing: 0:35 Introducing our guest 4:10 introducing the story the capital one hack  5:45 The phases of the Capital One hack 7:50 The first misconfiguration - servers exposed to the internet unintentionally 11:05 the SSRF vulnerability and understanding meta-data service 19:38 Using API keys for browsing S3 and how to mitigate it 26:00 things that Capital One did right and additional insights 28:00 how should developers and IT  30:50 shifting from traditional security to new cloud security mindset 36:00 summary and final words

Attendees Guest: Or Kamara Guest Title:  Senior team lead  Company:  Synk Abstract Cloud computing can bring interesting and new attack vectors. In this episode, we talk with Or Kamara, Senior team lead at Synk, about the Capital-one hacking and what can be learned from the event in order to better protect our networks. We will analyze the attack step by step and add mitigating controls that can help in preventing the next attack. Timing: 0:35 Introducing our guest 4:10 introducing the story the capital one hack  5:45 The phases of the Capital One hack 7:50 The first misconfiguration - servers exposed to the internet unintentionally 11:05 the SSRF vulnerability and understanding meta-data service 19:38 Using API keys for browsing S3 and how to mitigate it 26:00 things that Capital One did right and additional insights 28:00 how should developers and IT  30:50 shifting from traditional security to new cloud security mindset 36:00 summary and final words

NOW PLAYING

Episode 19: Understanding Cloud Attack Vectors

0:00 40:22

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

On va refaire le monde X "En mode coach" Lola Bon. J’ai décidé d’aborder des sujets dont on ne parle pas, par peur du jugement de l’autre, par pudeur, par insignifiance, ou par manque d’envie.Le sexe est pourtant partout. Il fait partie intégrante des relations humaines, qu’elles soient amoureuses, amicales, professionnelles, cordiales ou même fortuites. Et pourtant, on n’en parle pas, ou pas assez, ou juste pas de la bonne manière.Moi, je veux parler du sexe, du vrai, celui qui est là, devant nous, et qu’on ignore…Bienvenue sur : On va refaire le monde X En mode coach. Le comptoir de la psychologie Le comptoir de la psychologie Je suis Jo, psychologue clinicienne et j'ai crée ce podcast afin de rendre accessible les différents reliefs de la psychologie. Il s'agit d'un travail de construction et de déconstruction pour apprendre et s'ouvrir autour des différents thèmes que logent la psychologie et la psychanalyse. J'aborde le métier du psychologue et de sa rencontre mais aussi ses outils, concepts, représentations, symptômes etc... Pour me soutenir, j'ai crée une page Patreon : https://www.patreon.com/lecomptoirdelapsychologie Merci beaucoup pour vos contributions ainsi que vos encouragements, vos retours ❤️ Bonnes écoutes :-) Contact : [email protected] Hébergé par Acast. Visitez acast.com/privacy pour plus d'informations. Babel Radio Popolare Il podcast della trasmissione Babel di Radio Popolare Incassaforte Pod Incassaforte Incassaforte Pod: il podcast di Personal Finance che vi aiuta a risparmiare.

Frequently Asked Questions

How long is this episode of SilverLining IL?

This episode is 40 minutes long.

When was this SilverLining IL episode published?

This episode was published on August 2, 2020.

What is this episode about?

Attendees Guest: Or Kamara Guest Title:  Senior team lead  Company:  Synk Abstract Cloud computing can bring interesting and new attack vectors. In this episode, we talk with Or Kamara, Senior team lead at Synk, about the Capital-one hacking and...

Can I download this SilverLining IL episode?

Yes, you can download this episode by clicking the download button on the episode player, or subscribe to the podcast in your preferred podcast app for automatic downloads.
URL copied to clipboard!