YBYash Bhardwajindata-privacy.hashnode.dev·7h ago · 6 min readCloud Penetration Testing: A Practical Guide to Identifying and Reducing Cloud Security RisksAs organisations continue moving applications and data to the cloud, attackers are adapting their techniques to exploit cloud-specific weaknesses. Misconfigured storage, exposed management interfaces,00
TATanweer Ahmedincloudwithtanweer.hashnode.dev·1d ago · 4 min readAI is Writing Cloud Infrastructure. Are We Creating the Next Security Crisis?AI is Writing Cloud Infrastructure—Are We Creating the Next Security Crisis? Cloud with Tanweer – Future of Cloud Series | Episode #1 Artificial Intelligence can generate infrastructure in seconds.00
AKAkaeze Kosisochukwuinaudrey01.hashnode.dev·2d ago · 8 min readThe IP address that Shouldn't Exist but doesImagine losing over a hundred million customers' data to the public overnight. That was Capital One's reality in 2019. Although multiple failures contributed to this breach, sitting at the center of t00
MAMudassar Aliinmuddassarali.hashnode.dev·5d ago · 7 min readWhy I Chose Cybersecurity: The Myths, The Realities, and Finding the Right PathAddressing the confusion in an information-overloaded world, looking past Hollywood tropes, and building an actual path forward. I spent a lot of time exploring different areas of computer science be00
YPYogeshwar Peelainexploitnotes.hashnode.dev·Jul 18 · 7 min readFAM CTF : The Cloud writeupSummary The target exposed a webhook endpoint (/internal/webhook) meant to act as an internal-only proxy, blocking direct requests to private and link-local IP ranges. That blocklist checked resolved 00
Rrathsarainrr-cyber.hashnode.dev·Jul 18 · 14 min readOperationalising It: Making Prisma Cloud Actually UsefulAfter the Rollout: The Work That Actually Starts Deploying Prisma Cloud took months. Making it operational took longer. By the time CWPP was live across OCI and GCP and CSPM was covering all four clou00
AEAdeshina Emmanuelineadeshina.hashnode.dev·Jul 18 · 14 min read Cloud Identity Security Engineering #001 Cloud Identity Security Engineering is built around a single idea: IAM permissions are not a list. They are a graph. Before authorization relationships can be modeled as graphs, traversed as attack pa10
TATanweer Ahmedincloudwithtanweer.hashnode.dev·Jul 14 · 3 min readGetting Started with AWS IAM: Users, Groups, Roles, and Custom PoliciesIntroduction As part of my cloud learning journey, I wanted to gain hands-on experience with Identity and Access Management (IAM), one of the most important security services in AWS. In this project, 00
TATanweer Ahmedincloudwithtanweer.hashnode.dev·Jul 14 · 2 min readHow I Hosted a Static Website on AWS S3 – Step-by-Step GuideIntroduction As part of my cloud learning journey, I wanted to build practical projects instead of only studying theory. My first hands-on AWS project was hosting a static website using Amazon S3. Thi00
VVertexPlusintokirvertex.hashnode.dev·Jul 9 · 8 min readAPI Security Best Practices for Modern Applications APIs have quietly become the connective tissue of almost every modern application. Mobile apps, microservices, third-party integrations, AI agents — nearly all of it moves through APIs. That's exactly00