One over-permissioned Service Principal leaked through an old configuration, and we could read, delete, replace and encrypt every blob. The difference between ‘restored in five minutes’ and ‘we paid’ is two boring settings.
An Hour Into the Assessment We’re Cloud Admin – and It’s Never a Zero-Day
Most companies believe their cloud is secure because someone configured IAM policies and the CSPM shows green. We get admin inside an hour, from an IAM policy copied off Stack Overflow two years ago.
One Cyrillic Letter, and the Identity Provider Was Theirs
Cognito checks that Identity Provider names are unique – at the byte level, not the visual one. U+0435 looks exactly like a Latin e, and the system accepted both.
Attackers Don’t Break Into Your Cloud. They Log In.
No exploit, no zero-day, nothing that trips an alert. A Cognito refresh token can be valid for ten years, and CloudTrail sees everything while understanding nothing.
There Is No Safe Starter Kit. There Is Only One Nobody Has Tested Yet.
A starter kit that generates IAM roles with wildcard permissions on every resource. AWS’s fix was to update the documentation.
Still Using SSRF to Take Over Cloud Deployments Once Again
How Server-Side Request Forgery Can Lead to Full Cloud Compromise – and What You Can Do About It Introduction Server-Side Request Forgery (SSRF) is a powerful exploit that enables attackers to trick a vulnerable server into making arbitrary HTTP requests on their behalf. While some view SSRF as merely a method to force the server […]
Firestore White Box Security Review Checklist
Introduction Securing your application’s Firestore database is crucial for protecting sensitive data and maintaining user trust. Google Firestore, a scalable NoSQL cloud database, offers robust features for real-time data management, but securing it against threats requires careful attention. This article is designed to help developers and security professionals assess and strengthen their Firestore implementations. A […]
Firebase Applications – The Untold Attack Surface
Introduction In this blogpost, we will review some of the basic components of a Firebase application from a Security Perspective and talk about common issues that don’t get enough attention. What is Firebase? Firebase is a complete backend as a service with many different features that we can plug straight into our applications. For example: There […]


