YoVDO

My Terrible Roommates - Discovering the FlowFixation Vulnerability and the Risks of Sharing a Cloud Domain

Offered By: BSidesLV via YouTube

Tags

Cloud Security Courses Session Hijacking Courses Remote Code Execution Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Discover the FlowFixation vulnerability and explore the risks of sharing cloud domains in this 17-minute conference talk from BSidesLV. Delve into the potential prevention of impactful web vulnerabilities and learn about a "secret" guardrail for bug reporting and vulnerability triage. Examine a common cloud provider default configuration that poses risks similar to JavaScript execution on victim subdomains in on-premises environments. Gain insights into the public suffix list (PSL) as a lesser-known safeguard and explore case studies of significant cloud vulnerabilities. Investigate the FlowFixation vulnerability affecting AWS Managed Workflows for Apache Airflow (MWAA), which could lead to user session hijacking and potential remote code execution. Join speaker Liv Matan for this eye-opening presentation on cloud security challenges and solutions.

Syllabus

Breaking Ground, Tue, Aug 6, 17:00 - Tue, Aug 6, CDT


Taught by

BSidesLV

Related Courses

Don's Introduction to Ethical Hacking for Beginners
Udemy
Complete Cyber Security Course: Go From Zero To Hero
Udemy
Performing Incident Response and Handling
Pluralsight
Ethical Hacking: Session Hijacking
LinkedIn Learning
Learn SQL +Security(pen) testing from Scratch
Udemy