In a very strange turn of events, I've randomly stumbled across a misconfigured #S3 Bucket. I have no idea who owns it, or how sensative the contents might be. Does anyone have any suggestions on how to go about the responsible disclosure process here? Do I contact amazon Web Services perhaps? Boosts for reach would be greatly appreciated. #Infosec
Conversation
Notices
-
Embed this notice
Justin Ekis (jekis@hachyderm.io)'s status on Saturday, 07-Sep-2024 05:13:33 JST Justin Ekis -
Embed this notice
Justin Ekis (jekis@hachyderm.io)'s status on Saturday, 07-Sep-2024 05:16:12 JST Justin Ekis @GossiTheDog Good point I suppose. I'm new to this. I can get a listing of the contents, and I can access at least one of the files. I wouldn't think that would be intended.
-
Embed this notice