Developed http://flaws.cloud, CloudMapper, and Parliament.
Founding team for fwdcloudsec.org
Principal Cloud Security Researcher at Wiz.
- SSO
- SSO-admin, which oddly uses arn:aws:trebuchet:::
- controlcatalog
- trustedadivsor
- route53 healthcheck
- Multi-party Approval qualified policies, which just ignores the arn format entirely with a 64 digit "partition". github.com/boto/botocor...
- SSO
- SSO-admin, which oddly uses arn:aws:trebuchet:::
- controlcatalog
- trustedadivsor
- route53 healthcheck
- Multi-party Approval qualified policies, which just ignores the arn format entirely with a 64 digit "partition". github.com/boto/botocor...
Not in Berlin? No worries, you can join us live on YouTube: www.youtube.com/live/-a9Ts7...
It's going to be a packed day of sharp insights and real-world lessons for cloud security l33ts.
Not in Berlin? No worries, you can join us live on YouTube: www.youtube.com/live/-a9Ts7...
It's going to be a packed day of sharp insights and real-world lessons for cloud security l33ts.
- the Amazon Q Developer extension compromise
- s1ngularity
- LameHug
- PromptLock ransomware
AI safeguards and non-determinism have limited the impact in some of these cases, but you can directly observe the iterations to improve in s1ngularity: www.wiz.io/blog/s1ngula...
2/2
- the Amazon Q Developer extension compromise
- s1ngularity
- LameHug
- PromptLock ransomware
AI safeguards and non-determinism have limited the impact in some of these cases, but you can directly observe the iterations to improve in s1ngularity: www.wiz.io/blog/s1ngula...
2/2
www.youtube.com/watch?v=PH6w...
www.youtube.com/watch?v=PH6w...