4 ms·
> side channel attacks.. gain access to privileged data/etc. through unprivileged processes True, but tbh that's not the first thing I'd reach for. if someone
by jamiesonbecker 6y ago
> side channel attacks.. gain access to privileged data/etc. through unprivileged processes
True, but tbh that's not the first thing I'd reach for. if someone already has pwned your single function or a control plane, then it's usually game over anyway, and escalation sploits are usually a lot easier than a side channel.
Whether AWS has IC or FedRAMP background seems kind of irrelevant to a simple bug bounty program, especially for a trillion dollar company, when I was able to find an escalation vuln in about three minutes in an unfamiliar codebase in a language that wasn't my primary. They should have at least acknowledged and said thanks for the heads-up.
- count 6y agoBig provider controls planes are not going to be ruined by a privilege escalation. There are many, many layers to their defense systems. The Intel Community and it's members tend to not do anything to call attention to themselves, their actions, their capabilities, etc. Overall security can be enhanced by keeping things quiet, or at least, that is a common perspective from that part of the world.