BlackHat presentation demo vids: Amazon
ID: c50396cc-c152-5258-8007-924b8f42b4a3
STIX ID: report--c50396cc-c152-5258-8007-924b8f42b4a3
Feed Name: SensePost Blog
This BlackHat write-up demonstrates three abuses of Amazon EC2 operational processes: scripting account creation and instance launches to create large-scale resource consumption (AMIBomb); repeatedly registering public AMIs to obtain favorable listing positions and entice users to run malicious images (AMI Registration Race); and creating persistent, unpaid copies of paid AMIs by removing owner/product metadata and resigning manifests (AMI Stealing). The attacks exploit weak signup/fraud controls, listing ordering, and manifest handling to enable resource theft, distribution of potentially malicious images, and loss of AMI creator revenue.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
