Identify the AWS Account ID from a Public S3 Bucket
Scenario
Real-world context
Entry Point
$ sudo nmap -sS -sV -sC -oA results -Pn 54.204.171.32
[sudo] password for cscogin:
Starting Nmap 7.94SVN ( https://nmap.org ) at 2024-01-04 16:09 CST
...
...
Host is up (0.045s latency).
Not shown: 999 filtered tcp ports (no-response)
PORT STATE SERVICE VERSION
80/tcp open http Apache httpd 2.4.52 ((Ubuntu))
|_http-title: Mega Big Tech
|_http-server-header: Apache/2.4.52 (Ubuntu)
Service detection performed. Please report any incorrect results at https://nmap.org/submit/ .
Nmap done: 1 IP address (1 host up) scanned in 17.99 secondsHTTP server enumeration


Last updated