
Rami McCarthy
@ramimacisabird
security, for the internet, at @wiz_io!
opinionated about security.
(he/him) @[email protected], bsky=ramimac.me
ID: 1138180991556698112
http://ramimac.me 10-06-2019 20:27:49
865 Tweet
1,1K Followers
723 Following



🎙️ New #CryingOutCloud episode! 🚨 Amitai Cohen 🎗️🤟 & Eden Naftali chat with Nir Ohfeld on #IngressNightmare — an unauth RCE in NGINX Ingress Controller. Listen now: 🎧open.spotify.com/episode/0G1Mml… 🍏 podcasts.apple.com/us/podcast/ing…






Always interesting to see a new open source CSPM, this time from Ant Group: github.com/antgroup/Cloud… h/t 尺Ξn4tø 尺ødɿiguΞ5ǃ͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗͗ ็็้้้



Big fan of Chris Norman and Ziyad Edher's BSidesSF talk! Admission Control for Dependencies is an under rated and under discussed tool in supply chain security: youtube.com/watch?v=fCaQOP…



Seeing reports that Alibaba Cloud's main domain was pointed to The Shadowserver Foundation for ~6 hours, 🤨 mp.weixin.qq.com/s?__biz=MzI4ND…

> We've set up a web endpoint so vetted ... security researchers can submit suspected exposed credentials for review > To report exposed Google Cloud credentials, please contact [email protected] cloud.google.com/blog/products/… really buried a lede!
