TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

F5 Labs

Will gRPC Be the Next Protocol to Slip by Your Defenses?

2020-06-04 · Read original ↗

ATT&CK techniques detected

1 predictions
T1059.006Python
84%
"s - d sbacker / hellonerd : v1 python server. py figure 4. command to launch grpc server get ip address for the hellonerd server docker inspect hellonerd _ s | grep ipaddress figure 5. command to capture grpc server ip address create a client instance docker run - - name helloner…"

Summary

Longstanding security challenges such as input validation, data exposure, and rate limits are affecting modern gRPC-based applications.