Security operations incidents: 10 problems
Certificates, SSH access, CORS, access policies, leaked keys, and offboarded accounts.
0/10
1A certificate is rotated and one client still rejects itBeginner7 minFree2The SSH management path is blocked after an overly narrow allowlist changeBeginner16 minFree3Locked-down file permission hides SSH authorized_keys from user sessionBeginner14 minFree4CORS blocks the new admin frontend's API calls with credentialsBeginner14 minFree5MFA enforcement skipped for legacy admin endpointBeginner14 minFree6Let's Encrypt auto-renewal kept failing until the certificate expiredIntermediate16 minFree7S3 AccessDenied: the IAM policy allows it but the bucket policy denies itIntermediate17 minFree8An AWS access key was pushed to a public GitHub repositoryIntermediate18 minFree9OAuth device code session remains active after user offboardingIntermediate20 minFree10Managed WAF rule blocks a legitimate JSON admin requestIntermediate20 minFree
A problem counts as done once you submit it. The goal is to write your answer in full and compare it with the model answer, regardless of the keyword score. Log in to track submitted problems as progress.