June 16, 2023, 3:02 p.m. | Guru Baran

GBHackers On Security gbhackers.com

It has been discovered that threat actors might take over expired Amazon S3 buckets to serve rogue binaries without changing the actual modules. Malicious binaries exfiltrate the stolen data to the hacked bucket after stealing the user names, passwords, local machine environment variables, and local hostname. The attack was initially noticed when an npm package called […]


The post Hackers Use New Exploit Technique to Hijack S3 Buckets appeared first on GBHackers - Latest Cyber Security News | Hacker News …

amazon amazon aws attack changing cyber-attack data environment expired exploit hacked hackers hijack local machine malicious modules names passwords rogue s3 buckets stealing stolen threat threat actors

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Security Compliance Strategist

@ Grab | Petaling Jaya, Malaysia

Cloud Security Architect, Lead

@ Booz Allen Hamilton | USA, VA, McLean (1500 Tysons McLean Dr)