Diving Deeper into Subdomain Takeovers & Mitigations with Shubham Shah

  Рет қаралды 3,761

OWASP DevSlop

OWASP DevSlop

2 жыл бұрын

▬▬▬▬▬▬ 📝 ABSTRACT & BIO ▬▬▬▬▬▬
In this episode of OWASP DevSlop we’ll be diving into different types of infrastructure takeovers, with a focus on subdomain takeovers, and how they can be leveraged by attackers and bounty hunters to create real security impact. Bug bounty hunters, defenders, and DevOps or DevSecOps practitioners should not miss this episode! We’ll be taking a look at different cloud infrastructure providers, cloud services, and how this often overlooked or misunderstood attack surface can translate into real security issues, as well as what defenders and developers can do about it.
SHUBHAM SHAH
Shubham Shah is the co-founder and CTO of Assetnote. Shubham is a prolific bug bounty hunter in the top 50 hackers on HackerOne and has presented at various industry events including QCon London, Kiwicon, AusCert, BSides Canberra and CrikeyCon. In his free time, Shubham enjoys performing high-impact application security research.
▬▬▬▬▬▬ 🔗 LINKS ▬▬▬▬▬▬
Ghostbuster Resources
github.com/assetnote/ghostbuster
blog.assetnote.io/2022/02/13/...
Other Resources
github.com/indianajson/can-i-...
gist.github.com/fransr/a155e5...
godiego.co/posts/STO-Azure/
▬▬▬▬▬▬ 🎥 Producer ▬▬▬▬▬▬
Nancy Gariché ► / nancygariche
▬▬▬▬▬▬ 🎙️Hosts ▬▬▬▬▬▬
Bec ► / errbufferoverfl
James ► / devec0
Lilly ► / attacus_au
Mimi ► / p0kemina
▬▬▬▬▬▬ 👋 Connect with Us ▬▬▬▬▬▬
KZbin ► / owaspdevslop
INSTAGRAM ► / ​
TWITTER ► / owasp_devslop
▬▬▬▬▬▬ SHOW SPONSOR ✨ ▬▬▬▬▬▬
www.appsecengineer.com/

Пікірлер
Privilege Escalation in the Cloud with Carlos Polop
1:01:56
OWASP DevSlop
Рет қаралды 1,5 М.
Learning from AWS (Customer) Security Breaches with Rami McCarthy
1:19:53
Получилось у Миланы?😂
00:13
ХАБИБ
Рет қаралды 6 МЛН
ОБЯЗАТЕЛЬНО СОВЕРШАЙТЕ ДОБРО!❤❤❤
00:45
Amazing weight loss transformation !! 😱😱
00:24
Tibo InShape
Рет қаралды 67 МЛН
EVOLUTION OF ICE CREAM 😱 #shorts
00:11
Savage Vlogs
Рет қаралды 12 МЛН
Stop, Intel’s Already Dead! - AMD Ryzen 9600X & 9700X Review
13:47
Linus Tech Tips
Рет қаралды 947 М.
D3 LiXiang L6 Машина Года 2025?
15:14
smotraTV
Рет қаралды 113 М.
Guardrails: who, what, why, when
1:21:43
OWASP DevSlop
Рет қаралды 299
Demystifying the SBOM’s impact on Secure Software Deployment
1:09:06
The $5 Mid-2000s Mini PC - Thrift Store Finds
32:43
Michael MJD
Рет қаралды 80 М.
Let’s Write Security Unit Tests! with Eric Johnson
1:04:31
OWASP DevSlop
Рет қаралды 2,1 М.
Yellow Team + Blue Team = Green Team
1:17:53
OWASP DevSlop
Рет қаралды 644
il caldo fa brutti scherzi #dog #fight #punch
0:18
Cronache della Campania
Рет қаралды 28 МЛН
family is everything 🥺❤️ #shorts
0:16
Pop it GO
Рет қаралды 23 МЛН
УДИВИЛА ПАРНЯ🤯👏
0:20
Бутылочка
Рет қаралды 7 МЛН
#cat #shorts Rescue Adorable Kittens
0:50
Shohel Is Back
Рет қаралды 29 МЛН