AWS - RDS Unauthenticated Enum
Last updated
Last updated
Learn & practice AWS Hacking:HackTricks Training AWS Red Team Expert (ARTE) Learn & practice GCP Hacking: HackTricks Training GCP Red Team Expert (GRTE)
For more information check:
AWS - Relational Database (RDS) EnumIt's possible to give public access to the database from the internet. The attacker will still need to know the username and password, IAM access, or an exploit to enter in the database.
AWS allows giving access to anyone to download RDS snapshots. You can list these public RDS snapshots very easily from your own account:
Learn & practice AWS Hacking:HackTricks Training AWS Red Team Expert (ARTE) Learn & practice GCP Hacking: HackTricks Training GCP Red Team Expert (GRTE)