AWS - SQS Unauthenticated Enum

Support HackTricks

SQS

For more information about SQS check:

AWS - SQS Enum

Public URL template

https://sqs.[region].amazonaws.com/[account-id]/{user_provided}

Check Permissions

It's possible to misconfigure a SQS queue policy and grant permissions to everyone in AWS to send and receive messages, so if you get the ARN of queues try if you can access them.

Support HackTricks

Last updated