Sunday, 1 Mar 2026
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Colocation > Critical AWS Vulnerabilities Allow S3 Attack Bonanza
Colocation

Critical AWS Vulnerabilities Allow S3 Attack Bonanza

Last updated: August 12, 2024 11:17 am
Published August 12, 2024
Share
Critical AWS Vulnerabilities Allow S3 Attack Bonanza
SHARE

Six crucial vulnerabilities in Amazon Internet Companies (AWS) may have allowed risk actors to focus on organizations with distant code execution (RCE), exfiltration, denial-of-service assaults, and even account takeovers.

“Many of the vulnerabilities had been thought-about crucial as a result of they gave entry to different accounts with minimal effort from the attacker perspective,” Aqua’s lead safety researcher Yakir Kadkoda tells Darkish Studying.

Throughout a briefing on August 7 at Black Hat USA in Las Vegas, researchers at Aqua Safety revealed that they found new assault vectors utilizing bugs “Bucket Monopoly” and “Shadow Assets.” The impacted AWS companies embody Cloud Formation, CodeStar, EMR, Glue, SageMaker, and Service Catalog.

Upon discovering the vulnerabilities in February, the Aqua researchers reported them to AWS, which confirmed the problems and rolled out mitigations to the respective companies piecemeal between March and June. Nonetheless, open supply iterations may nonetheless be weak.

‘Bucket Monopoly’: Attacking Public AWS Account IDs

The researchers first uncovered Bucket Monopoly, an assault technique that may considerably increase the success price of assaults that exploit AWS S3 buckets – i.e., on-line storage containers for managing objects, akin to recordsdata or photographs, and assets required for storing operational information…

Associated:Omdia: AWS Dominated $57B Cloud Storage Companies Market in 2023

Continue reading this article in Dark Reading.



Source link

See also  Singapore to Free Up More Power for Data Center Expansions
TAGGED: attack, AWS, Bonanza, Critical, vulnerabilities
Share This Article
Twitter Email Copy Link Print
Previous Article How the chip giant missed a big opportunity How the chip giant missed a big opportunity
Next Article Assessing the State of Data Center Supply Chains in H2 2024 Assessing the State of Data Center Supply Chains in H2 2024
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

VRIFY Raises $12.5M in Series B Funding

VRIFY, a Vancouver, BC, Canada-based know-how firm combining AI with {industry} experience for minerals exploration,…

March 1, 2025

Exploring 7 Types of Content Delivery Networks

Content material Supply Networks (CDNs) are available varied sorts tailor-made to satisfy particular use instances…

January 9, 2025

Server Rack vs. Chassis: What’s the Difference, and Why Does It Matter?

Understanding knowledge heart racks, chassis, and their variations is essential for environment friendly server deployment.…

July 21, 2025

Researchers identify carbon contamination as key barrier in gallium oxide electronics

Overview of ADF-STEM cross-sectional photographs of the metallic contact Au/Ti/Ga2O3 interface. Pattern A (non-conductive) exhibits…

July 29, 2025

Amazon Cancels Fees for Customers Moving to Rival Cloud Services | DCN

(Bloomberg) -- Amazon.com’s cloud companies division is halting charges it has lengthy charged prospects that…

March 6, 2024

You Might Also Like

AI
Global Market

OpenAI launches stateful AI on AWS, signaling a control plane power shift

By saad
Genetec unveils UK data centre for Security Center SaaS
Colocation

Genetec unveils UK data centre for Security Center SaaS

By saad
£76m for national compute to solve critical industry challenges
Innovations

£76m for national compute to solve critical industry challenges

By saad
Stuttgart data centre to utilise excess server heat for local schools and offices
Colocation

Stuttgart data centre to utilise excess server heat for local schools and offices

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.