ramimac / aws-customer-security-incidents

A repository of breaches of AWS customers
GNU General Public License v3.0
705 stars 40 forks source link

New Attack Vector In The Cloud: Attackers caught exploiting Object Storage Services #121

Closed ramimac closed 1 year ago

ramimac commented 1 year ago

https://www.securityjoes.com/post/new-attack-vector-in-the-cloud-attackers-caught-exploiting-object-storage-services

​The attacker exploited a vulnerable version of MinIO on an AWS EC2 instance.

The attacker executed scripts (batch/bash) to initiate a connection with the C2 server.

Subsequent to acquiring the victim's system profile, the threat actor ... conducts network reconnaissance activities