Pranav Thorve

An Engineer's Notes on Cloud and AI Security

Exploring cloud security, AI security, and the technologies shaping the future of secure infrastructure

Security Blogs

1 post
  1. How Capital One was breached: SSRF against IMDSv1

    In 2019, a server-side request forgery reached EC2 instance metadata, stole temporary instance-role credentials, and used them to read private objects from S3. IMDSv1 accepted a plain GET; requiring IMDSv2 returns HTTP 401 on the same request.

    AWS · IMDS