Cloud Security Podcast cover image

Finding Security Holes in Azure Services

Cloud Security Podcast

00:00

Cloud Security - Is There a Gogo Bounty Program?

All cloud providers have a language in their user agreement that allows for a security testing, and if you report it to them. And i would say that like the what you said about the gogo bounty, they're very much active in the bounty space, and they really want to target security efforts towards their products. It was a baggan in the azure automation, a service which was found by an arcer researcher named janil sarimi from from mytim. So he just scanned the entire port space and just grabbed tokens from other custso essentially, if you got lucky and you ran on the same machine as a big customer with a huge cloud estate, and you essentially got their tokens

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app