公有云漏洞相关的资料整理

渗透技巧 2年前 (2022) admin
750 0 0

Goal:

List of all the Publicly disclosed vulnerabilities of Public Cloud Provider like Amazon Web Services (AWS), Microsoft Azure, Google Cloud, Oracle Cloud, IBM Cloud etc

NOTE: This list will not cover any data breaches caused by misconfiguration

Table of contents

Contribute

Do you want to contribute to this list? Feel free to send a PR.

Cloud Service Provider Vulnerabilites

Amazon Web Services (AWS)

Microsoft Azure

Google Cloud

Oracle Cloud

IBM Cloud

All Cloud

  • sudo vulnerability – Published 6 August,2021 – Status: PARTIAL (requires User Caution)
  • Dynamic DNS – Published 6 August,2021 – Status: PARTIAL (requires User Caution)
  • Log4Shell – Published 13 December,2021 – Status: Resolved
  • Spring4Shell – Published 13 March,2022 – Status: Resolved

Useful Links

Security Bulletin

  • Amazon Web Services (AWS) – (link)
  • Microsoft – (link)
  • Google Cloud – (link)

Vulnerability Disclosure

All identified vulnerabilities should be disclosed to the vendors/maintainers of affected software or hardware systems directly. All major cloud providers have published disclosure addresses

Awesome Community Links

 

原文始发于GitHub:公有云漏洞相关的资料整理

版权声明:admin 发表于 2022年6月7日 下午10:37。
转载请注明:公有云漏洞相关的资料整理 | CTF导航

相关文章

暂无评论

您必须登录才能参与评论!
立即登录
暂无评论...