AWS Cyber Threats
Jump to navigation
Jump to search
- Subdomain Takeover
- S3 Bucket Public READ Access
- S3 Bucket Authenticated Users WRITE Access
- S3 Directory Traversal
- Insecure S3 POST Upload Policy
- Lambda Command Injection
- Misconfigured Reverse Proxy
- Misconfigured AWS Cognito Attributes
- Misconfigured AWS Cognito Profile Allows Self-Registration
- Leftover Debug Code (Haha!)
- Dangerous Dependencies
- Lambda XML Entity Injection
- Server Side Request Forgery