Detection Dispatch Ep. 49: Hack my S3 with Kennedy Torkura

Detection Dispatch Ep. 49: Hack my S3 with Kennedy Torkura

57 Lượt nghe
Detection Dispatch Ep. 49: Hack my S3 with Kennedy Torkura
We teamed up with Kennedy Torkura, CTO & Co-founder at Mitigant to test common S3 breach techniques—SSRF pivots, credential abuse, and more—against live cloud infrastructure using Anvilogic’s open-source AWS Detection Packs and threat scenarios. We cover: * Which techniques slipped through detection * How behavioral detections held up * The hygiene checklist every detection engineer should be using Buckets were breached. Lessons were learned. Detections were challenged.And now, you get the inside scoop on what worked—and what didn’t. Anvilogic Github Links in Episode: https://github.com/anvilogic-forge/armory/blob/97adf5e974fc9c63c4569c0f109161db8c3735bf/detections/endpoint/aws_instance_metadata_service_queried_for_credentials-nix/aws_instance_metadata_service_queried_for_credentials-nix-splunk-edr.yml#l300 Join us live every two weeks on Thursdays: https://www.anvilogic.com/workshop #detectionengineering #threatdetection #s3 #cloudsecurity