writeups.xyz writeups.xyz / AWS Misconfiguration

Title Vulnerabilities Programs Authors
Conditional Love for AWS Metadata Enumeration
500$ Bounty in just 5 minutes through Recon!!!!
“2022: A Year of Fascinating Discoveries”
Bug hunting: Open access to S3 bucket
Misconfigured AWS S3 Bucket (Information Disclosure & Subdomain Takeover)
Zimbra Open Bucket Data Leak – Responsible Disclosure
How I Found a company’s internal S3 Bucket with 41k Files
Passive Recon with Spyse (Part-II)
Hacking AWS Cognito Misconfiguration to Zero Click Account Takeover
A Tale Of 5250$: How I Accessed Millions Of User’s Data Including Their National ID’s
Exploiting S3 bucket with path folder to Access PII info of A BANK
From Finding AWS S3 Bucket to Sensitive Data Exposure
How @Mailru traeted my report on their program
Playing With s3 Leaks
How I earned $$$$ by Amazon S3 Bucket misconfigurations?
How I was able Find mass leaked AWS s3 bucket from js File
Misconfigured $3 Bucket - A Semi Opened Environment
Lets Learn English - Hacking 10M+ Users
From AWS S3 Misconfiguration to Sensitive Data Exposure
Misconfigured s3 bucket leads to Sensitive Data exposure(No super controls )
How I dumped PII information of customers in an ecommerce site?
Obtained a bunch of sensitive data in just few steps — Hacking
Misconfigured S3 Bucket Access Controls to Critical Vulnerability
Write-up: AWS Document Signing Security Control Bypass
How, I dumped crypto data by chaining directory listing to open S3 Bucket