THREAT OPS › Threat News › The Risk of Exposed Cloud Functions and How to Harden
The Risk of Exposed Cloud Functions and How to Harden
<div class="block-paragraph_advanced"><p>Written by: Corné de Jong</p> <hr /></div> <div class="block-paragraph_advanced"><h3><span style="vertical-align: baseline;">Introduction</span><strong style="vertical-align: baseline;"> </strong></h3> <p><span style="vertical-align: baseline;">Mandiant security assessments frequently identify publicly exposed serverless applications that lack authenticatio
MITRE ATT&CK techniques
- ServerlessT1583.007
- VulnerabilitiesT1588.006
- CredentialsT1589.001
- ServerlessT1584.007
- ServerlessAML.T0008.004
- Generative AIAML.T0016.002
Indicators of compromise
- https://cloudrun01-abc.europe-west3.run.app/url
- https://cloudrun02-abc.europe-west3.run.app/url
- http://metadata.google.internal/computeMetadata/v1/instance/service-accounts/default/tokenurl
- https://www.wiz.io/academy/ai-security/vibe-coding-securityurl
- https://exampleabc01.comurl