Yanir Tsarimi
@yanir_
Hacker. I write about security in ways most can understand. Microsoft Most Valuable Researcher ‘22/23/24. @breachproof
ID: 80947228
https://breachproof.net 08-10-2009 21:23:38
81 Tweet
3,3K Followers
135 Following
Great video by Bug Bounty Reports Explained explaining all the Azure Health Bot bugs really well! Check it out:
🚨We could bypass authentication to thousands of applications by exploiting a configuration-based vulnerability in AWS ALB. Here’s everything you need to know about the #ALBeast vulnerability discovered by Miggo Security
We (+sagitz Ronen Shustin Hillai Ben-Sasson) found a series of unauthenticated RCEs in core @KubernetesIO project "Ingress-NGINX". The impact? From zero permissions ➡️ to complete cluster takeover 🤯 This is the story of #IngressNightmare 🧵⬇️