

Disclosing Vulnerabilities in the Cloud with Ryan Nolette
Oct 29, 2024
Ryan Nolette, a Senior Security Engineer at AWS Outreach with almost two decades in info security, shares insights on vulnerability disclosure. He discusses AWS's commitment to communication with security researchers and the importance of responsible disclosure methods. Ryan highlights the nuances between vulnerability and bug bounty programs, advocating for transparency in security practices. He emphasizes the need for collaboration to tackle security flaws and speaks about the balance between encouraging researchers and managing opportunistic behaviors in the field.
Chapters
Transcript
Episode notes
1 2 3 4 5 6
Intro
00:00 • 2min
Navigating Vulnerability Disclosure Programs
02:22 • 15min
Navigating Development Environments and Security Spam
17:31 • 2min
Understanding VDPs and Bug Bounty Programs
19:56 • 5min
Creative Engagement Strategies
24:33 • 5min
Evolving Security Practices in the Digital Landscape
29:26 • 10min