Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Serverless Security Top 10

via YouTube

Overview

Explore the top 10 serverless security concerns in this comprehensive conference talk from BSides Tampa 2019. Delve into crucial topics such as event injection, broken authentication, sensitive data exposure, XML external entity vulnerabilities, broken access control, security misconfigurations, and cross-site scripting. Learn about additional entry points like MQTT, SES, and SNS, and understand the risks associated with insecure deserialization and insufficient logging and monitoring. Gain valuable insights to enhance your serverless security practices and discover resources for further learning in this 52-minute presentation by Tal Melamed.

Syllabus

Intro
The Evolution of the Cloud
Event Injection
Broken Authentication
SLS3: Sensitive Data Exposure
XML External Entity
Broken Access Control
Security Misconfiguration
Cross-Site Scripting • More incoming entry points - MQTT, SES, SNS
Insecure Deserialization
Insufficient Logging & Monitoring
Want to learn more?

Reviews

Start your review of Serverless Security Top 10

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.