mirror of
https://github.com/HackTricks-wiki/hacktricks-cloud.git
synced 2026-06-28 17:33:28 -07:00
translate 2
This commit is contained in:
@@ -57,4 +57,3 @@ Other services found vulnerable:
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -48,4 +48,3 @@ Many AWS error messages (even access denied) will give that information.
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -59,4 +59,3 @@ You can find more information in the [**original research**](https://blog.plerio
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -14,4 +14,3 @@ https://{random_id}.cloudfront.net
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -38,4 +38,3 @@ This new relationship between Github Actions and AWS creates another way to comp
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -51,4 +51,3 @@ Pacu (new:test) > run cognito__enum
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -14,4 +14,3 @@
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -18,4 +18,3 @@ Apart from giving access to all AWS or some compromised external AWS account, or
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -63,4 +63,3 @@ aws ec2 describe-instances --query "Reservations[].Instances[?PublicIpAddress!=n
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -37,4 +37,3 @@ crane ls <PRIVATE_REGISTRY_URL> | sed 's/ .*//'
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -28,4 +28,3 @@ aws elbv2 describe-load-balancers --query 'LoadBalancers[?Scheme == `internet-fa
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -40,4 +40,3 @@ aws elasticbeanstalk describe-environments --query 'Environments[?OptionSettings
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -15,4 +15,3 @@ https://search-{user_provided}-[random].[region].es.amazonaws.com
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -179,4 +179,3 @@ Note that **wildcard** (\*) before the **colon** (:). You can create an org such
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -134,4 +134,3 @@ For more info about this [**check this post**](https://mjg59.dreamwidth.org/6217
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -16,4 +16,3 @@ https://{random_id}.iot.{region}.amazonaws.com:443
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -14,4 +14,3 @@ https://{random_id}.kinesisvideo.{region}.amazonaws.com
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -25,4 +25,3 @@ You can find more information in the [**original research**](https://blog.plerio
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -16,4 +16,3 @@ https://{random_id}.data.mediastore.{region}.amazonaws.com
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -25,4 +25,3 @@ ssl://b-{random_id}-{1,2}.mq.{region}.amazonaws.com:61617
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -21,4 +21,3 @@ b-{1,2,3,4}.{user_provided}.{random_id}.c{1,2}.kafka.{region}.amazonaws.com
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -47,4 +47,3 @@ postgres://{user_provided}.{random_id}.{region}.rds.amazonaws.com:5432
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -14,4 +14,3 @@
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -206,4 +206,3 @@ s3_client.put_bucket_acl(
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -24,4 +24,3 @@ So if you **find the ARN of topics** inside the account (or brute forcing potent
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
-1
@@ -26,4 +26,3 @@ It's possible to misconfigure a SQS queue policy and grant permissions to everyo
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user