Explore the intricacies of cloud security in this conference talk that delves into the concept of "Compromise-as-a-Service" within Azure environments. Gain insights into hypervisor security, virtual air gaps, and the specific vulnerabilities of Hyper-V. Learn about hypercalls, attack surfaces, and the process of root cause analysis in cloud infrastructure. Discover debugging techniques and understand a critical bug that impacts cloud security. Conclude with valuable lessons and implications for securing cloud environments in the modern era.
Overview
Syllabus
Intro
Background
Security Objectives
Parts of an Hypervisor
Virtual Air Gap
Why Hyper-V?
Hypercalls
Attack Surface
Expectations
Root cause analysis
Debugging
The Bug
Conclusions
Taught by
WEareTROOPERS