보이는 것만
0:00
S… Speaker 1 (v09044g40000c4a59bjc77u49l210pig)
Snapchat just disclosed that they paid $25,000 for an exposed Kubernetes API that gave someone RCE and access to credentials. So let's talk about what's going on here. In describing the bug, the researcher says that he did a worldwide Kubernetes scan with binary edge, found an exposed API endpoint that didn't require authorization, and he was able to run commands. What does this even mean? Binary edge.
0:24
S… Speaker 1 (v09044g40000c4a59bjc77u49l210pig)
attack surface identification. That just means they scan the whole internet looking for things that don't require authentication or like a username and password to access. So binary edge was used to find the unauthenticated Kubernetes API. But what the hell is that? Kubernetes is container management, which basically means it's the control system for a lot of cloud computer resources. So the researcher found that he could access this without a password, which gave him access to these without a password. Running commands here is a compromise of Snapchat.
0:53
S… Speaker 1 (v09044g40000c4a59bjc77u49l210pig)
That's where they paid $25,000.

이 기록은 AI (자동 음성 인식)에 의해 생성되었습니다. 오류가 있을 수 있습니다 - 중요한 사용을 위해 원본 오디오와 확인하십시오. AI 정책

❤️ STT.ai가 마음에 드시나요? 친구들에게 알려주세요!
요약
요약 을 클릭하여 이 녹음의 AI 요약을 생성합니다.
요약...
이 녹음에 대해 AI에게 물어보기
이 녹음에 대해 질문하십시오 — AI는 관련 섹션을 찾아 답변합니다.