Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

One Click, Six Services: Abusing the Dangerous Multi-service Orchestration Pattern

fwd:cloudsec via YouTube

Overview

Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Watch a 20-minute conference talk from fwd:cloudsec where Senior Security Researcher Liv Matan explores the hidden security implications of cloud service orchestration. Discover how a single click in cloud platforms like GCP can trigger multiple interconnected services, creating potential security vulnerabilities. Learn about a novel privilege escalation vulnerability uncovered in GCP's cloud functions deployment flow that allowed code execution as the default Cloud Build service account. Understand the broader security implications of cross-service dependencies in cloud architectures, and gain insights into tools and techniques for uncovering hidden APIs and potential attack vectors. Explore real-world examples demonstrating how treating cloud services as black boxes can lead to security risks, and learn practical approaches to understanding and securing multi-service deployments in cloud environments.

Syllabus

One Click, Six Services: Abusing The Dangerous Multi-service Orchestration Pattern - Liv Matan

Taught by

fwd:cloudsec

Reviews

Start your review of One Click, Six Services: Abusing the Dangerous Multi-service Orchestration Pattern

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.