CD's second night
Tags : RED-TEAM

AWS-Identify the AWS Account ID from a Public S3 Bucket

🗒️AWS-Identify the AWS Account ID from a Public S3 Bucket

通过爆破和二分法优化,成功从公开S3桶中识别出AWS账户ID。

AWS-S3 Enumeration Basics

🗒️AWS-S3 Enumeration Basics

通过AWS S3桶的公开访问权限,获取并利用硬编码的AWS凭证,成功访问敏感信息。

AWS-Exploit Weak Bucket Policies for Privileged Access

🗒️AWS-Exploit Weak Bucket Policies for Privileged Access