aws-security

2 articles
sort: new top best
clear filter
0 2/10

Bishop Fox's Mexico team won first place at both HackMex Finals and EkoParty Red Team Space in 2025 by leveraging web exploitation, infrastructure compromise, and AWS attack techniques.

Bishop Fox HackMex EkoParty HackMex Finals EkoParty Red Team Space
bishopfox.com · bishopfox · 7 hours ago · details
0 7/10

Researcher discovered a subdomain takeover technique by exploiting an improperly configured S3 bucket that allowed unauthenticated write access via AWS CLI. By uploading a malicious _redirect.html file with proper ACL permissions, the attacker could execute arbitrary content on the victim subdomain without exploiting a traditional subdomain takeover vulnerability.

AWS Amazon S3 MuhammadKhizerJaved HackerOne Bugcrowd
blog.securitybreached.org · devanshbatham/Awesome-Bugbounty-Writeups · 20 hours ago · details