Login
Roast topics
Find topics
Find it!
From:
frichetten.com
(Uncensored)
subscribe
Enumerate AWS API Permissions Without Logging to CloudTrail
https://frichetten.com/blog/aws-api-enum-vuln/
links
backlinks
Roast topics
Find topics
Roast it!
Writeup for a bug I discovered in the AWS API that would allow you to enumerate certain permissions for a role without logging to CloudTrail.