Skip to content

New technique: Exfiltrating S3 via Amazon Bedrock#705

Open
myugan wants to merge 2 commits intoDataDog:mainfrom
myugan:feat/-add-s3-bedrock
Open

New technique: Exfiltrating S3 via Amazon Bedrock#705
myugan wants to merge 2 commits intoDataDog:mainfrom
myugan:feat/-add-s3-bedrock

Conversation

@myugan
Copy link
Copy Markdown

@myugan myugan commented Oct 26, 2025

What does this PR do?

  • New attack technique

Motivation

Inspired by https://sonraisecurity.com/blog/sandboxed-to-compromised-new-research-exposes-credential-exfiltration-paths-in-aws-code-interpreters/

Checklist

  • The attack technique emulates a single attack step, not a full attack chain
  • We have factual evidence & references that the attack technique was used by real malware, pentesters, or attackers
  • The attack technique makes no assumption about the state of the environment prior to warming it up

@myugan myugan requested review from a team as code owners April 20, 2026 00:11
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant