Digital garden

Home

❯

case study

❯

bughunt

❯

web_bug

❯

hackerone eternal 2019 05 m 507097

hackerone-eternal-2019-05-m-507097

Feb 04, 20261 min read

hackerone-eternal-2019-05-m-507097

Open AWS S3 bucket leaks all Images uploaded to Zomato chat

보고서

이미지를 업로드하는 s3 서버에 접근하여 파일을 다운로드할 수 있었다.

AWS cli를 이용해 aws s3 ls s3://$bucketname/2019/1/ 와 같이 접근했다.


tags: bughunting, zomato, wstg-conf-11, s3 misconf, severity medium, web hacking


Graph View

  • hackerone-eternal-2019-05-m-507097
  • Open AWS S3 bucket leaks all Images uploaded to Zomato chat

Created with Quartz v4.5.1 © 2026

  • Blog