ClearVector
  • Product
    Why ClearVector
    Identity-driven
    Track human, machine, or 3rd party activity across everything in or connected to your production environment
    Runtime activity
    Use runtime activity to identify active threats or unintended actions
    Speed
    Built for speed - time to detect and contain in seconds to minutes
  • Solutions
    Use cases
    Detect and isolate
    Instant notification of risky activity,
    one click to stop
    Triage and investigate
    Find out who did it and why
    Environments
    AWS
    GCP
    GitHub
    Kubernetes & container runtimes
  • Pricing
  • About
    • About us
    • Careers
    • Contact us
  • Blog
  • Sign in
Get started
Tagged

Research

A collection of 3 posts

Merge Order Hijacking in AWS Lambda
Research

Merge Order Hijacking in AWS Lambda

As serverless computing increasingly becomes popular, third-party vendors are incentivized to provide runtime enhancements to serverless workloads. These enhancements often include telemetry collection, log enrichment, or runtime security enhancements. In this blog, we examine how AWS and third-party vendors deploy these enhancements within AWS Lambda, and how attackers can leverage

  • Andrew Davis
Andrew Davis Mar 26, 2024 • 8 min read
LambdaSpy - Implanting the Lambda execution environment (Part two)
Research

LambdaSpy - Implanting the Lambda execution environment (Part two)

In part one [https://www.clearvector.com/blog/lambda-internals/] of this series, we discussed the AWS Lambda execution environment. In this post, we focus on the challenge of persisting in a serverless environment, gaining access to the data that Lambda functions process, and one possible method in the form of

  • Andrew Davis
Andrew Davis Nov 9, 2022 • 8 min read
Lambda internals (Part one)
Research

Lambda internals (Part one)

The past several years have seen a significant rise [https://www.cncf.io/wp-content/uploads/2020/12/CNCF_Survey_Report_2020.pdf] in the use of serverless cloud computing solutions, and with good reason. Serverless [https://aws.amazon.com/serverless/] applications can be cheaper, more scalable, more rapidly developed and

  • Andrew Davis
Andrew Davis Nov 9, 2022 • 7 min read
Get started
Product Why ClearVector How it works Pricing
About Blog Latest news Sign in
Contact us [email protected]
GitHub
Copyright © 2025 ClearVector Inc. All Rights Reserved.
Terms Privacy Security