this post was submitted on 07 Apr 2024
483 points (95.3% liked)

Security

4980 readers
3 users here now

Confidentiality Integrity Availability

founded 4 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 145 points 6 months ago (3 children)

As much as I hate them, this is likey because a customer misconfigured their bucket and not on Amazon.

[–] [email protected] 46 points 6 months ago

Just like when users get "hacked" a lot of the time it was just their own lack of security practices and not the service provider. Obviously there are exceptions and I hate defending tech giants but end users are often to blame.

[–] cybersandwich 18 points 6 months ago

I have never configure s3 buckets for an enterprise personally, but I have used AWS for some personal projects. The control panel pretty clearly warns you if you try to open the bucket to the public. "This is unsafe. Everyone can see everything you idiot!"

They must be doing it through the CLI.