Keeping an eye on RDS vulnerabilities. [Research Saturday]

Keeping an eye on RDS vulnerabilities. [Research Saturday]

0 Hinnangud
0
Osa
2175 of 3511
Kestus
14 min
Keel
inglise
Vorming
Kategooria
Teadmiskirjandus

Gafnit Amiga, Director of Security Research from Lightspin joins Dave to discuss her team's research "AWS RDS Vulnerability Leads to AWS Internal Service Credentials." The research describes how the vulnerability was caught and right after it was reported the AWS Security team applied an initial patch limited only to the recent Amazon Relational Database Service (RDS) and Aurora PostgreSQL engines, excluding older versions. They followed by personally reaching out to the customers affected by the vulnerability and helped them through the update process. The research states "Lightspin's Research Team obtained credentials to an internal AWS service by exploiting a local file read vulnerability on the RDS EC2 instance using the log_fdw extension." The research can be found here: AWS RDS Vulnerability Leads to AWS Internal Service Credentials

Learn more about your ad choices. Visit megaphone.fm/adchoices


Loe ja kuula

Astu lugude lõputusse maailma

  • Suurim valik eestikeelseid audio- ja e-raamatuid
  • Proovi tasuta
  • Loe ja kuula nii palju, kui soovid
  • Lihtne igal ajal tühistada
Proovi tasuta
Device Banner Block-copy 894x1036
Cover for Keeping an eye on RDS vulnerabilities. [Research Saturday]

Muud podcastid, mis võivad sulle meeldida ...