New ‘ALBeast’ Vulnerability reveals AWS Application Load Balancer weakness

SeniorTechInfo
2 Min Read




Aug 22, 2024 – Ravie Lakshmanan
Cloud Security / Application Security
New ‘ALBeast’ Vulnerability reveals AWS Application Load Balancer weakness

As many as 15,000 applications using Amazon Web Services’ (AWS) Application Load Balancer (ALB) for authentication are potentially susceptible to a configuration-based issue that could expose them to sidestep access controls and compromise applications.

That’s according to findings from Israeli cybersecurity company Miggo, which dubbed the problem ALBeast.

“This vulnerability allows attackers to directly access affected applications, particularly if they are exposed to the internet,” security researcher Liad Eliyahu said.

ALB is an Amazon service designed to route HTTP and HTTPS traffic to target applications based on the nature of the requests. It also allows users to “offload the authentication functionality” from their apps into the ALB.

Found this article interesting? Follow us on Twitter and LinkedIn to read more exclusive content we post.


Share This Article
Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *