this post was submitted on 07 Apr 2024
528 points (95.8% liked)

Security

5005 readers
1 users here now

Confidentiality Integrity Availability

founded 5 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] AmbiguousProps@lemmy.today 167 points 1 year ago (4 children)

As much as I hate them, this is likey because a customer misconfigured their bucket and not on Amazon.

[–] Lucien@hexbear.net 24 points 1 year ago (1 children)

Yeah, I work for a Federal agency, and I can confirm this is an extremely plausible situation. Was probably a contractor.

[–] melpomenesclevage@lemm.ee 3 points 1 year ago

Good thing those are always necessary and efficient.

[–] cybersandwich@lemmy.world 18 points 1 year ago

I have never configure s3 buckets for an enterprise personally, but I have used AWS for some personal projects. The control panel pretty clearly warns you if you try to open the bucket to the public. "This is unsafe. Everyone can see everything you idiot!"

They must be doing it through the CLI.