AWS EC2 IMDSv2 Demo - S3 Bucket Policy with VPC Endpoint - Capital One Cloud Data Breach CASE STUDY

แชร์
ฝัง
  • เผยแพร่เมื่อ 20 ต.ค. 2024

ความคิดเห็น • 2

  • @BishmeetSingh-r1h
    @BishmeetSingh-r1h 2 หลายเดือนก่อน +1

    But how the hacker will not go via VPC endpoint to S3?
    Hacker already have the credentials to access S3 from the EC2. This means they will be able to access S3 but will not be able to run Sync command as with VPC endpoints the data will not leave the private network?

    • @knowledgeindia
      @knowledgeindia  2 หลายเดือนก่อน

      @@BishmeetSingh-r1h the IAM condition will deny the action if it is not originating from the vpc endpoint (from hacker's machine).