Podcast

CodeBreach: Hijacking the AWS Console with Yuval Avrahami

🚨 Everything you need to know about CodeBreach with Yuval Avrahami

On this episode of Crying Out Cloud, Eden Koby Naftali & Amitai Cohen sit down with Wiz researcher @Yuval Avrahami to unpack a major supply-chain flaw that put cloud environments at risk ↓

  • Misconfigured CodeBuild instances used by AWS themselves
  • One small regex mistake, huge consequences
  • How an SDK used by the AWS Console could have been hijacked (!)
  • The CI/CD controls that can mitigate this risk

Crying Out Cloud Newsletter

Stay Safe & Informed: Receive the Latest Cloud Security News, Real Attack Insights, and Expert Guidance to Protect Your Environment.

Sign up to receive the latest updates in cloud security directly to your inbox

For information about how Wiz handles your personal data, please see our Privacy Policy.