Call it social media threat intelligence gathering 😎
If you can only search for single IP's then start with 52.27.191[.]181, 52.27.190[.]67, 52.27.190[.]9, 52.27.190[.]10, 52.27.191[.]179, 52.27.191[.]164, 52.27.190[.]82, 52.27.190[.]78, 52.27.190[.]90.
Yes AWS are aware.
Thought I'd ask the cloud community to DM me or reply if you've seen activity in your AWS logs (S3 / VPC / web application) for IP addresses in the range of 52.27.190[.]0 > 52.27.191[.]255 between July 2022 and April 2024. We've seen billions of requests, are we alone?
As someone involved in the AWS offsec space, I want to share why I strongly do NOT recommend the HackTricks AWS Red Team Expert course. The author of it is a plagiarist, stealing content from other creators and is directly profiting off of it through sponsorships. A 🧵
@crbholdings @ericpullen@Ford This meant my Powerwall never charged and had to buy a generator to get through another 48h outage. AC coupled batteries are not good in backup or off grid situations!
@crbholdings @ericpullen@Ford I have a powerwall and would love to sell it, last big outage where I live lasted 12h powering single fridge and lights and was fully charged. Next day it wouldn’t charge because utility increased grid voltage to 265v to force grid feed solar to turn off.
@0xdabbad00 Add to this AWS encourage “small” businesses and partners to use distributors, which means the distributors own root access and their email and phone systems become responsible and therefore targets for literally thousands of accounts.
@0xdabbad00 My (non) favourite feature is the S3 server access logs are configured to log to itself, circular logging is definitely not cost optimised!
This is not a drill for Jenkins users that choose to expose their instances / servers to the internet. Long list of plugins vulnerable with no patches: https://t.co/QbErmU8IUV Time to remove them from being publicly exposed!
Found my first working #IoT project in storage… Nokia 6110 with SMS microcontroller for digital I/O! 15+ years ago it was pretty sophisticated for a home alarm system compared to what we have now. Little circuit board on the right is actually a remote doorbell receiver.
New: underground trade of bots that steal your 2FA codes. Bot places convincing automated call to target. Victim enters code, gets fed to hacker instantly. Dramatically lowers the barrier of entry for bypassing 2FA, no social engineering skills needed https://t.co/oaZhjuFa7c