Аналіз типових вразливостей конфігурацій сервісів IAM, S3 та EC2 у середовищі AWS
Abstract
управління ідентифікацією та доступом (IAM), об'єктного сховища (S3) та обчислювальних ресурсів (EC2). Для кожної категорії описано сценарії експлуатації, реальні інциденти та кількісні оцінки критичності за шкалою and Access Management (IAM), Simple Storage Service (S3), and Elastic Compute Cloud (EC2). For each category, exploitation scenarios, real-world incidents, and quantitative criticality scores according to the CVSS v3.1 scale are described. A hierarchical threat classification is proposed and the priority of risk mitigation measures is justified within the AWS Shared Responsibility Model.
URI:
https://ir.lib.vntu.edu.ua/handle/123456789/53262

