Cloud Asset Discovery in AWS, GCP, and Azure Environments
Identity and trust chains, not IP addresses, reveal cloud attack paths.
Deja Okonkwo
Staff Writer, Recon & AI Tooling
Deja began her career as an OSINT analyst supporting investigative journalism before pivoting into offensive security research, where she now covers reconnaissance tradecraft and the growing ecosystem of AI-assisted attack tooling. She has spoken at regional security conferences on adversarial machine learning applications.
3 stories
Identity and trust chains, not IP addresses, reveal cloud attack paths.
Server-side defenses miss DOM-based XSS because the attack never leaves the browser.
Server trust the token header to decide which algorithm verifies it, enabling forged credentials.