Back to directory
WRITEUP #4855

Write-up: AWS Document Signing Security Control Bypass

CloudAWS misconfiguration
by@ozgur_bbh(Ozgur Alp)
Bounty
1,000
Program
-
Published
Feb 26, 2020
Added to HackDex
Sep 15, 2022
Read Full Writeuphttps://medium.com/@ozguralp/write-up-aws-document-signing-security-control-bypass-2b13a9c22a4d
RELATED WRITEUPS
The Hunt for ALBeast: A Technical Walkthrough
CloudAWS ALB
Addressed AWS defaults risks: OIDC, Terraform and Anonymous to AdministratorAccess
CloudOIDC
Double Agent: Exploiting Pass-through Authentication Credential Validation in Azure AD
CloudPrivilege escalation
Bucket Monopoly: Breaching AWS Accounts Through Shadow Resources
CloudRCE
UnOAuthorized: Privilege Elevation Through Microsoft Applications
CloudPrivilege escalation

Built with ❤️ by Shubham Rawat