#HITB2023HKT

  Рет қаралды 1,973

Hack In The Box Security Conference

Hack In The Box Security Conference

11 ай бұрын

Amazon Cognito is an AWS service that’s becoming increasingly popular in modern apps as it provides a complete solution for authentication, authorization, and user management. However, its implementation can easily be misconfigured leaving the door open for various cyber attacks. In this talk, we’ll go over some of these security misconfigurations and how to test for them either when you’re doing a security audit or bug bounty hunting then we’ll present a case study of a zero-interaction account takeover on Flickr and then provide practical tips for developers on how to mitigate and avoid these misconfigurations.
===
Yassine Aboukir is a principal security consultant specializing in application and cloud security working with organizations from various industries. Yassine is also a proficient bug bounty hunter actively hacking on the HackerOne platform where he’s a member of the hacker advisory board, globally ranked in the top 20 hackers, won MVH title and 1st place at H1-303 live hacking event held in Denver. He has spoken at various international security conferences and enjoys meeting and connecting with like-minded people.

Пікірлер
#HITB2023HKT D2T2 - NVMe: New Vulnerabilities Made Easy - Tal Lossos
38:25
Hack In The Box Security Conference
Рет қаралды 287
#HITB2023HKT D2T1 - A Deep Dive Into Two (Windows) Exploits Demonstrated At Pwn2Own - Thomas Imbert
51:58
Миллионер | 1 - серия
34:31
Million Show
Рет қаралды 2,2 МЛН
The joker favorite#joker  #shorts
00:15
Untitled Joker
Рет қаралды 30 МЛН
Incredible: Teacher builds airplane to teach kids behavior! #shorts
00:32
Fabiosa Stories
Рет қаралды 11 МЛН
#HITB2023HKT CLOSING KEYNOTE - Systems Alchemy: The Transmutation Of Hacking - The Grugq
30:53
Hack In The Box Security Conference
Рет қаралды 1,4 М.
Hacking Amazon Cognito! (vulnerable_cognito)
52:18
Tyler Ramsbey || Hack Smarter
Рет қаралды 1,7 М.
Is DevSecOps the Game-Changer Automotive Software Developers Need?
42:59
PlaxidityX (Formerly Argus)
Рет қаралды 13 М.
#HITB2023HKT #COMMSEC D2 - B(l)utter - Reversing Flutter Applications - Worawit Wangwarunyoo
46:39
Hack In The Box Security Conference
Рет қаралды 1,1 М.
Cybersecurity Architecture: Who Are You? Identity and Access Management
31:15
Top 50+ AWS Services Explained in 10 Minutes
11:46
Fireship
Рет қаралды 1,5 МЛН
#HITB2023HKT D2T1 - Hacking Into IOS’s VOLTE Implementation - Rajanish Pathak & Hardik Mehta
37:48
Amazon Cognito Beginner Guide
24:55
Be A Better Dev
Рет қаралды 123 М.
Миллионер | 1 - серия
34:31
Million Show
Рет қаралды 2,2 МЛН