S3 attacks

S3 attacks

TL;DR: Public buckets, ACL drift, signed URLs leaking out of CI, replication-policy confused deputy.

Stub — to be filled in.

What it is

TODO

Preconditions / where it applies

TODO

Technique

TODO

Detection and defence

TODO

References

  • TODO