Protecting the Keys to the Kingdom with Fortinet
Cloud Field Day 24
•
35m
The Three Pillars of Fortinet AI Security: Protect from AI, Assist with AI, and Secure AI. This demonstration illustrates how Fortinet combines AI-driven analytics for SOC assistance with deep protection for AI workloads themselves. Showcasing a simulated attack on a cloud-based e-commerce application powered by an AI chatbot, and highlighting vulnerabilities that can be exploited through prompt injection and server-side request forgery (SSRF). Julian, acting as the attacker, successfully gains access to AWS metadata, steals credentials, and manipulates the chatbot to respond in "ducky language" by injecting malicious content into the S3 bucket storing review data. The attack demonstrated how an attacker could exploit hidden or overlooked API features, underscoring the importance of input sanitization and proper configuration of cloud resources.
Srija then demonstrates Fortinet's web application firewall (FortiWeb) capabilities in mitigating SSRF attacks through input validation and parameter filtering. By creating rules to block requests originating from local or auto-configuration IPs, FortiWeb successfully prevents Julian from obtaining a new token. Derek showcases FortiCNAP's ability to monitor API calls, detect malicious activity based on IP address geolocation, and identify misconfigured roles with excessive entitlements.
Finally, Derek initiates an automated remediation workflow using FortiSOAR, triggered by the detection of malicious activity. The workflow cleans the malicious file from the S3 bucket, blocks access from the attacker's IP address, and revokes the temporary credentials, showcasing a comprehensive approach to threat detection, response, and remediation in a cloud environment. The presentation concludes by reinforcing the importance of a layered security approach that combines preventive measures, monitoring, and automated responses to protect AI-powered applications and cloud infrastructure.
Presented by Derrick Gooch, Consulting System Engineer, Fortinet, Srija Alam, Cloud Security Architect, Fortinet, and Julian Petersohn, Principal Systems Engineer, Fortinet. Recorded live at Cloud Field Day in Emeryville on October 21, 2025. Watch the entire presentation at https://techfieldday.com/event/cfd24/ or visit https://www.fortinet.com/ for more information.
Up Next in Cloud Field Day 24
-
HPE’s Hybrid Cloud Strategy & Portfol...
Brad Park from HPE opens by outlining the company's hybrid cloud strategy and portfolio, emphasizing the importance of achieving a cloud operating model for AI and other initiatives. He highlights the challenges posed by technical debt and the complexities of heterogeneous enterprise environments...
-
Enabling Hybrid Cloud Anywhere with H...
In this CFD session, we explore how Hewlett Packard Enterprise (HPE) is transforming the way enterprises provision, manage, and protect hybrid cloud environments with the HPE CloudOps Software suite, comprising HPE Morpheus Enterprise, HPE OpsRamp, and HPE Zerto. Including discussion and live dem...
-
Eliminating Hypervisor Lock In and Ac...
Live from CFD, uncover how Hewlett Packard Enterprise (HPE) is eliminating VMware lock-in and accelerating Private Cloud adoption with HPE Morpheus VM Essentials. See how this powerful solution integrates VMware environments with HPE’s KVM-based hypervisor for seamless migration, VM-vending, and ...