Solution Study
Mittwoch, 20. September
12:00 - 12:30
Live in Berlin
Weniger Details
Serverless technology eliminates the need for development teams to provision servers, passing the responsibility for some security threats to the cloud provider and freeing-up developers to concentrate on building logic and producing value quickly. But even without servers, serverless functions still execute code, which can lead to a cloud disaster, if not done right. In this talk, we will discuss common risks and challenges in serverless environments. I will introduce techniques used by attackers to exploit Serverless apps in unconventional ways. I will also demonstrate exploits of recently discovered CVE, targeting cloud functions.
Paolo Spagli is Senior Security Researcher on Serverless and Cloud-Native technologies at Contrast Security. He is a former Cloud Security Architect and Engineer with 5 years’ experience in the field. In this role he is committed to help development teams shipping secure applications in the cloud. Paolo has over 15 years of experience in many fields including web development, software architecture, cloud technologies, security architecture, application security, DevSecOps. Paolo is based in Florence, Italy.