AWS - SNS Unauthenticated Enum

Learn AWS hacking from zero to hero with htARTE (HackTricks AWS Red Team Expert)!

Other ways to support HackTricks:

SNS

For more information about SNS check:

pageAWS - SNS Enum

Open to All

When you configure a SNS topic from the web console it's possible to indicate that Everyone can publish and subscribe to the topic:

So if you find the ARN of topics inside the account (or brute forcing potential names for topics) you can check if you can publish or subscribe to them.

Learn AWS hacking from zero to hero with htARTE (HackTricks AWS Red Team Expert)!

Other ways to support HackTricks:

Last updated