Bishop Fox published a clip showing a real assessment where a simple encoding trick bypassed output filtering and led to deeper access into a cloud environment.
Public source
Publisher name
Public post
Mental note: Attackers don't stop after the first failed prompt. This clip walks through a real assessment where a simple encoding trick bypassed output filtering and le…
Company
Bishop Fox
Attack to Protect
- Industry
- Computer and Network Security
- Location
- Tempe, US
- Company size
- 201–500 employees
About Bishop Fox
Bishop Fox is recognized as the leading authority in offensive security, providing solutions ranging from continuous penetration testing, red teaming, and attack surface management to product, cloud, and application security assessments. Enterprises have been told that breaches are inevitable. But we don’t accept that. We focus on offensive security because we believe securing modern organizations requires a "forward defense" approach that proactively uncovers and eliminates exposures before they are exploited. Over the past 20 years, we’ve worked with more than 25% of the Fortune 100, 8 of the top 10 global tech companies, and hundreds of other organizations to improve their security. Security isn’t just a job to us. We do this because we love it — and because we're committed to the common good. In fact, we have authored 20+ open-source tools, shared groundbreaking research, and published more than 50 security advisories in the last 5 years. Learn more about us at bishopfox.com or follow us on X @bishopfox for the latest updates.
See moreLatest activity
Latest activity from Bishop Fox
12 signals
Presence & Recognition
Bishop Fox CISO Christie Terrill will be joining speakers from Google/Mandiant and Hack The Box to discuss where AI belongs in offensive security and why humans are still critical to the process.
Presence & Recognition
Bishop Fox is hosting a hands-on session on how attackers abuse misconfigured CloudFormation execution roles and what defenders should be watching for on September 15.
Presence & Recognition
Bishop Fox is hosting a two-day course at WWHF Mile High in February 2027 on physical intrusion and social engineering assessments.
Discover more
Similar signals
Similar public activity from other companies.
Research & Knowledge
TrustedSec
TrustedSec published a blog post by Senior Security Consultant Lilly Mayo discussing the risk of default AWS WAF logging configurations and introducing a tool to pull, analyze, and replay logs.
Research & Knowledge
wizlynx group
wizlynx group published a research piece tracing how cloud storage misconfiguration becomes an attack path, covering discovery, identity, effective permissions, and post-fact attack scenarios.
Research & Knowledge
Act
Act Research team discovered a cross-tenant security flaw in Amazon Athena that allowed an account to read recent SQL query texts, Account IDs, and sensitive query parameter data from completely unrelated AWS accounts.
Research & Knowledge
Secure Blink
Secure Blink published the Weekly Threat Digest breaking the 88% rate of publicly leaked AWS keys still authenticating, a breach from a single vishing phone call to a full cloud compromise in 96 hours, and a breach via a real-time OTP intercept.
Research & Knowledge
Cyber Advisors