No-Slop Research & Human Thoughts on Security
  • Home
  • About
  • RSS Feed

More issues

GCP Service Account 101

Service Accounts are identities used for authenticating infrastructure and resources, typically for non-human entities. Service Accounts do not utilize passwords. While you have the option to generate and export a private key for a service account, it's generally unnecessary and can pose a security risk in most cases.
01 Dec 2020 1 min read

GCP Resource Hierarchy 101

Google Cloud is organized into a hierarchy with each level or node of this structure being a resource. At the top of the hierarchy is the Organization followed by any number of nested Folders which then house Projects. At the lowest level of the hierarchy are the widgets the compose
30 Nov 2020 1 min read

GCP IAM Policy 101

The GCP model for managing access to resources has three main parts: * Who: (the principal) * What: (the role) * Resource In Google Cloud Platform (GCP), permissions are granted by combining the WHO (principal) and the WHAT (role) to form a policy. This policy is then applied, or 'bound', to
30 Nov 2020 1 min read

About

No-Slop Research & Human Thoughts on Security

Thoughts, stories and ideas from a human in cloud and identity security research.

Topics

101

12 issues

201

7 issues

ai

4 issues

aws

3 issues

gcp

24 issues

musings

5 issues

research

12 issues

vuln

2 issues
No-Slop Research & Human Thoughts on Security © 2026
  • RSS Feed
  • CV
Powered by Ghost