My Terrible Roommates - Discovering the FlowFixation Vulnerability and the Risks of Sharing a Cloud Domain
Offered By: BSidesLV via YouTube
Course Description
Overview
Discover the FlowFixation vulnerability and explore the risks of sharing cloud domains in this 17-minute conference talk from BSidesLV. Delve into the potential prevention of impactful web vulnerabilities and learn about a "secret" guardrail for bug reporting and vulnerability triage. Examine a common cloud provider default configuration that poses risks similar to JavaScript execution on victim subdomains in on-premises environments. Gain insights into the public suffix list (PSL) as a lesser-known safeguard and explore case studies of significant cloud vulnerabilities. Investigate the FlowFixation vulnerability affecting AWS Managed Workflows for Apache Airflow (MWAA), which could lead to user session hijacking and potential remote code execution. Join speaker Liv Matan for this eye-opening presentation on cloud security challenges and solutions.
Syllabus
Breaking Ground, Tue, Aug 6, 17:00 - Tue, Aug 6, CDT
Taught by
BSidesLV
Related Courses
Architecting Microsoft Azure SolutionsMicrosoft via edX Internetwork Security
Indian Institute of Technology, Kharagpur via Swayam Network Security
Georgia Institute of Technology via Udacity Microsoft Professional Orientation : Cloud Administration
Microsoft via edX Cyber Threats and Attack Vectors
University of Colorado System via Coursera