Skip to content

Conversation

@xathrya
Copy link

@xathrya xathrya commented Mar 7, 2025

What does this PR do?

  • add new technique: Backdoor a Cloud Storage bucket via its bucket policy

add external fictitious account as admin of a cloud storage bucket

Motivation

This technique is developed as part of Grab's purple teaming activity and we want to share it so more people can get the benefit.


Co-authored-by: Satria Ady Pradana [email protected]

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant