@iamdavidobrien@mastodon.social

@iamdavidobrien

I am no longer here. For what Musk be obvious reasons.

Preferably not Katılım Nisan 2013
1 Takip Edilen328 Takipçiler
@[email protected] retweetledi
Corey Quinn
Corey Quinn@QuinnyPig·
Just to be clear here, this means that for a time @awscloud support was able to read all of your S3 data. There is no mitigation; this role is mandatory. If you had CloudTrail data events enabled, you can audit. If you didn’t, it may be time to declare a security incident.
Corey Quinn tweet media
Scott Piper@0xdabbad00

AWSSupportServiceRolePolicy just got s3:GetObject. 😱 That role is supposed to only have metadata visibility. @AWSSecurityInfo you need to roll that back.

English
31
378
992
0