Creating a vulnerable S3 instance

In Chapter 7Reconnaissance – Identifying Vulnerable S3 Buckets, we saw how we can create a vulnerable S3 bucket. It's time to perform those steps again. Let's start by going to Services | S3:

  1. Create a new bucket, name it, and then go to Set permissions
  2. Disable all the settings given in the following screenshot and create the bucket:

Setting permissions
  1. Go to the bucket's Access Control List and allow public read/write access:

Access Control List
  1. Save all the settings

Our vulnerable AWS infrastructure is ready. Next, we will configure and run Scout Suite and see how it can identify all the security misconfigurations that we have created.

..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
3.141.8.247