OWASP ‘ServerlessGoat’: A Vulnerable Demo Serverless Application

 

Throughout the years, the concept of creating vulnerable applications for learning and
demonstrating
 application security concepts has become common practice
.
 Years ago, OWASP launched the WebGoat&… Continue reading OWASP ‘ServerlessGoat’: A Vulnerable Demo Serverless Application

Tracing AWS SDK Calls With No Code Changes for AWS Lambda Security

There is a lot of buzz around Lambda function monitoring. You can find about a dozen companies that will provide you with very nice tools for debugging, profiling and monitoring of your AWS Lambda functions. AWS also offers its own services that c… Continue reading Tracing AWS SDK Calls With No Code Changes for AWS Lambda Security

PureSec Collaborates with Amazon Web Services to Provide Zero-Overhead Application Security for AWS Lambda Customers

The new PureSec protection layer for AWS Lambda is designed to help AWS customers further secure their serverless applications against cyber-attacks with minimal effort and no operational overhead
TEL AVIV, Israel, November 29, 2018 — PureSec, to… Continue reading PureSec Collaborates with Amazon Web Services to Provide Zero-Overhead Application Security for AWS Lambda Customers

A Deep Dive into Serverless Attacks, SLS-3: Sensitive Data Disclosure

Great news! The OWASP Serverless Top 10 first release is out! And so, we continue with this blog […]
The post A Deep Dive into Serverless Attacks, SLS-3: Sensitive Data Disclosure appeared first on Protego.
The post A Deep Dive into Serverless At… Continue reading A Deep Dive into Serverless Attacks, SLS-3: Sensitive Data Disclosure

AWS Security Best Practices: Lambda DoS Mitigation Strategies

Overview
How to avoid DoS and design resilient serverless applications is one of the most common topics we hear when discussing AWS Lambda security with organizations that are in the process of adopting serverless architectures.
The post AWS Secur… Continue reading AWS Security Best Practices: Lambda DoS Mitigation Strategies

The Serverless Show: The View from Different Angles

Watch the video below or listen to the audio on SoundCloud. For this episode, Hillel and Tal from […]
The post The Serverless Show: The View from Different Angles appeared first on Protego.
The post The Serverless Show: The View from Different An… Continue reading The Serverless Show: The View from Different Angles

A Deep Dive into Serverless Attacks, SLS-2: Broken Authentication

Thanks for joining me for the second post in the series. In the previous post I discussed what […]
The post A Deep Dive into Serverless Attacks, SLS-2: Broken Authentication appeared first on Protego.
The post A Deep Dive into Serverless Attacks,… Continue reading A Deep Dive into Serverless Attacks, SLS-2: Broken Authentication