intro to cloud hacking (leaky buckets)

  Рет қаралды 120,420

NetworkChuck

NetworkChuck

10 ай бұрын

Want to learn more? Make IT (and hacking) your job by learning skills from ITPro: ntck.co/itprotv (30% off FOREVER) *affiliate link
In this video, you'll learn how to hack the cloud, specifically Amazon S3. We'll cover what S3 buckets are, security basics, how to set up a bucket, how to set up AWS CLI, and how to use AWS Bucket Dump. We'll also explore some common flaws in S3 buckets and how to exploit them, using examples from flaws.cloud. To get started, all you need is a Linux machine (Ubuntu or Kali Linux), and a free AWS account if you want to try some of the more advanced steps.
Keep in mind that the techniques demonstrated in this video should only be used ethically and with explicit permission. We'll also provide resources for further learning, including the ITPro by ACI Learning Intro to AWS Pentesting course.
If you're interested in learning more about cloud security and ethical hacking, this video is for you. Don't forget to hit subscribe and turn on notifications for more videos like this!
Resources mentioned in the video:
-ITPro by ACI Learning (use code "networkchuck" for 30% off forever): itpro.tv
-Flaws.cloud: flaws.cloud
-AWS CLI: docs.aws.amazon.com/cli/lates...
-Grayhatwarefare: buckets.grayhatwarfare.com/
-AWS Bucket Dump: github.com/jordanpotti/AWSBuc...
-Worst S3 Hacks: businessinsights.bitdefender....
🔥🔥Join the NetworkChuck Academy!: ntck.co/NCAcademy
**Sponsored by ITPro from ACI learning
SUPPORT NETWORKCHUCK
---------------------------------------------------
➡️NetworkChuck membership: ntck.co/Premium
☕☕ COFFEE and MERCH: ntck.co/coffee
Check out my new channel: ntck.co/ncclips
🆘🆘NEED HELP?? Join the Discord Server: / discord
STUDY WITH ME on Twitch: bit.ly/nc_twitch
READY TO LEARN??
---------------------------------------------------
-Learn Python: bit.ly/3rzZjzz
-Get your CCNA: bit.ly/nc-ccna
FOLLOW ME EVERYWHERE
---------------------------------------------------
Instagram: / networkchuck
Twitter: / networkchuck
Facebook: / networkchuck
Join the Discord server: bit.ly/nc-discord
AFFILIATES & REFERRALS
---------------------------------------------------
(GEAR I USE...STUFF I RECOMMEND)
My network gear: geni.us/L6wyIUj
Amazon Affiliate Store: www.amazon.com/shop/networkchuck
Buy a Raspberry Pi: geni.us/aBeqAL
Do you want to know how I draw on the screen?? Go to ntck.co/EpicPen and use code NetworkChuck to get 20% off!!
fast and reliable unifi in the cloud: hostifi.com/?via=chuck
#aws #s3 #kalilinux

Пікірлер: 304
@NetworkChuck
@NetworkChuck 10 ай бұрын
Want to learn more? Make IT (and hacking) your job by learning skills from ITPro: ntck.co/itprotv (30% off FOREVER) *affiliate link 🔥🔥Join the NetworkChuck Academy!: ntck.co/NCAcademy **Sponsored by ITPro from ACI learning
@ferdinandw.8952
@ferdinandw.8952 10 ай бұрын
🄵🄸🅁🅂🅃
@GeiPeeruPuutin
@GeiPeeruPuutin 10 ай бұрын
25 seconds ago huh
@6Pain
@6Pain 10 ай бұрын
Do a playlist about cloud services your awesome ❤
@ahmedaribi8572
@ahmedaribi8572 10 ай бұрын
Hey Network Chuck!! I wish you can make a video to help me make a wifi adapter using a Pi Pico! You know, I can't buy a Wifi Adapter and Pi Pico is so helpful. Thanks in advance! I am a big fan and I can't wait for answer!!
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
Early crew 🤓😅😅🔥💚💚💚💚💚💚💚💚💪🏻🤑😌🤝🥳🥳🥰😈👿🐀.
@meganhowell4795
@meganhowell4795 10 ай бұрын
As a cloud penetration tester, I can say with confidence that this is the best tutorial I have seen on intro cloud hacking.
@NenaDarkPrincess
@NenaDarkPrincess 2 ай бұрын
Hey! How did you end up becoming a cloud penetration tester? Would be curious to know :)
@SamTinkersWith_
@SamTinkersWith_ 8 ай бұрын
you really do inspire and change the world. Positivity is contagious
@real2late
@real2late 8 ай бұрын
This is the first hacking video I had fun watching & actually understood everything. Tysm!
@bayareagolfclub1505
@bayareagolfclub1505 10 ай бұрын
Hi Chuck, glad to see you're doing well and back to making videos!!! I've been in the industry for quite a few years and stuff like this is sometimes what I need to get excited about tech again and work on my skills. The retrieving of the access key from a past commit was totally cool. I enjoy your enthusiasm and thank you for taking the time to make these videos. Have a good rest of your day! 🙂
@alitentif
@alitentif 10 ай бұрын
Hey *Metaspyclub* what an amazing work this has been and with all the crazy detection that you guys make possible. You guys take hacking to a whole new level and get the job done ASAP!!! I'm wondering what are all your personal qualifications?I don't think that it was ever mentioned before.
@OhHiNoU
@OhHiNoU 10 ай бұрын
This is epic. Network Chuck never makes a bad video. Keep up the good work.
@smith3463
@smith3463 10 ай бұрын
Yes i agree mr roblox chad face
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
:3 Early crew 🤓😅😅🔥💚💚💚💚💚💚💚💚💪🏻🤑😌🤝🥳🥳🥰😈👿🐀.
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
Your comment is epic because it has no grammatical errors, unlike the a average comment. It's also the top comment. 😅🥇🤝
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
:3 Yesh, I've seen Daniel explain Burp Suite on David Bombal's KZfaq channel before. He's a great teacher! :3
@ExpiredCoupons
@ExpiredCoupons 10 ай бұрын
Yes, always agree with a fellow Roblox chad face
@ismetking2377
@ismetking2377 10 ай бұрын
*Metaspyclub* is a patriot for telling what he sees on a cheater’s text.
@user-yo5lv8kl1q
@user-yo5lv8kl1q 9 ай бұрын
Hey Chuck. Just wanted to reach out. Love your Channel. I'm also in Cyber Security. Been for a while, and I find your channel to be very intriguing. Thank you for all these amazing videos. And yes, let's have some coffee! :)
@TureIMasterEquality
@TureIMasterEquality 2 ай бұрын
The invisible stairs trick is a classic, keep up the good work...😅
@abczwq8364
@abczwq8364 5 ай бұрын
just found your video, thank you for sharing your knowledge.. I like your videos very much !!! learning a lot from them.
@EatonMiddleSinger
@EatonMiddleSinger 10 ай бұрын
Thanks so much for making great hacking videos!
@janekmachnicki2593
@janekmachnicki2593 Ай бұрын
absolutely brilliant !!!! mate
@SteamSprint
@SteamSprint 10 ай бұрын
FIRST, Hey network chuck! I have watched your videos for a little while and want to thank you for helping me with all these AMAZING tutorials
@user-vg3jh7lg6o
@user-vg3jh7lg6o 7 ай бұрын
Thanks Chuck!
@number0x01
@number0x01 10 ай бұрын
Fire video as always!
@alldaytherapy2919
@alldaytherapy2919 10 ай бұрын
I literally typed out that url, worth it.
@yuikagauss
@yuikagauss 10 ай бұрын
Dont open random files from foreign buckets like you did in the end! Some of those buckets are designed to be public!
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
:3 Early crew 🤓😅😅🔥💚💚💚💚💚💚💚💚💪🏻🤑😌🤝🥳🥳🥰😈👿🐀.
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
Don't*
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
:D Yesh, I've seen Daniel explain Burp Suite on David Bombal's KZfaq channel before. He's a great teacher! :3
@quinnherden
@quinnherden 9 ай бұрын
@@user-re9wu1rm7uwhat service did you purchase?
@kennytieshisshoes
@kennytieshisshoes 10 ай бұрын
I have learned so much from you and Daniel!
@arifeyalcn1815
@arifeyalcn1815 10 ай бұрын
There is no doubt that you will rise fast at the apex of your career MetaspyClub . Because you are a very intelligent, smart, hard worker and your work ethic par excellence. Keep going People like you take the IM out of IMpossible by becoming PRO at tackling PROblems. You Rock!.
@psknhegem0n593
@psknhegem0n593 10 ай бұрын
Great content, as always!
@iamfakechris
@iamfakechris 9 ай бұрын
Epic ❤
@dyzyhacker3416
@dyzyhacker3416 10 ай бұрын
This is good content like in a good old days,you are the best
@red_hat_007
@red_hat_007 9 ай бұрын
とても有益な情報なので 日本人ですが、チャンネル登録させて頂きました。
@TechXTech91
@TechXTech91 3 ай бұрын
Subs of mine and I are trying to track down a bucket that we know is public access, but we only have the cloudfront domain forwarder. The game connected to that bucket shutdown in 2017, but for some reason the bucket contents and cdn are active
@DeepanshuKumar-pc4lm
@DeepanshuKumar-pc4lm 10 ай бұрын
Please make a video of kali tool TBomb please
@Jacob_Jay234
@Jacob_Jay234 10 ай бұрын
Hi love your content ❤
@paulthomas1052
@paulthomas1052 10 ай бұрын
Really useful and informative demo - thanks so much !!! Learned more about AWS but for me.....the possible flaws 😘
@jason-bz4st
@jason-bz4st 9 ай бұрын
Lol I watched the whole ad because I wanted to see how you made coffee 😅
@arifcoskun1350
@arifcoskun1350 9 ай бұрын
When sherry said the part about knowing you are in a relationship with a narcissist and being gaslit, when you start wanting to audio record conversations🤢 That literally made me feel sick. So many times I found myself wanting to do that so I can prove what I am saying is real and the truth but of course then there’s the fear of their reaction when you show them…I’ll be such a horrible person for having/needing to do that. It won’t even matter that WE proved we were right or they were “mistaken” or “forgot/confused” because they will not address the content of the recording and instead berate you for having the audacity to do that and how doing it makes us a horrible person or they’ll pull the “I’m sorry I’m sooOooOoo horrible, why are you even with me” “if you have to do that then we should just be done” they say anything other than taking accountability. The shitty part is some people would use that as a perfect opportunity to get out but sadly even though you are aware, it’s hard to leave. So them threatening scares you into submission, thanks *METASPYCLUB* for the phone evidences, I know I am not a horrible person for doing this but I just needed to know the truth
@severedconnections4821
@severedconnections4821 10 ай бұрын
You’re a ninja bro
@jayjarrett732
@jayjarrett732 10 ай бұрын
Shhhhhhhhhhhh! Bruh. Seriously best video ever.
@DeepanshuKumar-pc4lm
@DeepanshuKumar-pc4lm 10 ай бұрын
Hlo you are best hacker of this world
@_rymak_2044
@_rymak_2044 10 ай бұрын
Please make a video about how to use AWS...
@Dahlah.FightMe
@Dahlah.FightMe 10 ай бұрын
Nice Chuck :D
@xrellikgr
@xrellikgr 10 ай бұрын
I love learning hacking from a non hacker! Thanks for teaching me how to be an unethical hacker! 😈
@johnhack67
@johnhack67 10 ай бұрын
Good staff
@jijin2450
@jijin2450 10 ай бұрын
🔥🔥
@landless-wind
@landless-wind 10 ай бұрын
can you please make a video about manual sql injection from url?
@emilne83
@emilne83 10 ай бұрын
SQL injection is not a complex attack. You just need to understand how sql syntax is interpreted. There is a really good xkcd comic that explains it very well. Just google "xkcd explained bobby tables" for a good wiki describing it. To protect against it, thr application should "escape" any special characters before using them in SQL statements. This way things like quotes will be treated as part of the text in the variable rather than something that is to be interpreted by the database engine and thus being prone to exploitation.
@feliciastevens-eo6qo
@feliciastevens-eo6qo 10 ай бұрын
I'm not through this video yet, but many thanks as always, your enthusiasm always have me excited to learn.
@xuloIsaias
@xuloIsaias 6 ай бұрын
So in summary, everything is fine if it is not public, also you can use pre-signed url
@user-lc3ib4rx6z
@user-lc3ib4rx6z 10 ай бұрын
Amazing Chuck
@lolacza
@lolacza 10 ай бұрын
I love your content, still dreaming of episode about relational databases :3
@cat-ai200
@cat-ai200 10 ай бұрын
how to hide the consumption of a giga that we use at the fiber optic provider
@uzair7042
@uzair7042 10 ай бұрын
love that kind of content! thanks chunk
@r083r73h
@r083r73h 10 ай бұрын
This was so cool, thanks 👍🏻
@KareemAlHalabiOfficailChannel
@KareemAlHalabiOfficailChannel 10 ай бұрын
love you best teacher ever 🥰
@nxev
@nxev 10 ай бұрын
cool video
@craigcoffman69
@craigcoffman69 10 ай бұрын
Hey Chuck 😊
@justolise
@justolise 9 ай бұрын
I’m getting into cyber security wanted to ask if getting a mac is a good option ?
@hinditrollers9635
@hinditrollers9635 10 ай бұрын
Love ur videos
@iamernestt1
@iamernestt1 10 ай бұрын
Your content is fire, we need more and moore
@andreivaduva447
@andreivaduva447 10 ай бұрын
can you tell what AWS CLI i should install if i run a kali vm on a macbook air m1?
@jzbainabsbsosmsidnidnsi2647
@jzbainabsbsosmsidnidnsi2647 10 ай бұрын
Just amazing
@user-jf5de7jp9d
@user-jf5de7jp9d 10 ай бұрын
hey bro my kali linux tool Osintgram error for private api error please fix 🤣🤣🤣🤣
@aravinth6728
@aravinth6728 10 ай бұрын
Can u suggest any reading material ,books regarding hacking ,os and cybersecurity
@aninsecurecarrot
@aninsecurecarrot 10 ай бұрын
Can I get a
@mateidinescu6155
@mateidinescu6155 10 ай бұрын
print("Chuck, I watched all python videos on youtube, and yes I know that there are more, but they are paid, so I was wondering when you will post next video because the last one was 4 months ago. Please we need more python!!!")
@mcawesomeytyo3312
@mcawesomeytyo3312 9 ай бұрын
They will find reference pictures, comics, and drawings. I love to draw
@Aman-oy7yc
@Aman-oy7yc 10 ай бұрын
Can you please clear my doubt that if i useyour link for itprotv, i will get 30% off on subscriptions payment whether monthly or annually?
@Viberthal
@Viberthal 9 ай бұрын
Can you help me fix problem on kali Linux I launched airodump-ng and it not show anything help me out😢
@akash_ks_40
@akash_ks_40 10 ай бұрын
Big fan of India
@zidenzz
@zidenzz 10 ай бұрын
your content is like a PowerPoint presentation
@ReligionAndMaterialismDebunked
@ReligionAndMaterialismDebunked 10 ай бұрын
Yesh, I've seen Daniel explain Burp Suite on David Bombal's KZfaq channel before. He's a great teacher! :3
@tergkyit
@tergkyit 10 ай бұрын
❤❤❤❤
@LegacyTV-lt8yc
@LegacyTV-lt8yc 10 ай бұрын
I live for this shit man I just love watching your amazing content everyday & learning something new from it thank you!!
@igu642
@igu642 10 ай бұрын
❤❤
@iamernestt1
@iamernestt1 10 ай бұрын
@NetworkChuck what are your thoughts on pegasus sp*ware
@AlanKlughammer
@AlanKlughammer 10 ай бұрын
surprised you don't weigh your coffee while pouring. as a coffee geek (as well as an IT hack) I need to weigh the water going into my coffee.
@imkir4n
@imkir4n 10 ай бұрын
I love chuck
@getpapayt8076
@getpapayt8076 10 ай бұрын
Cheers NetworkMates❤
@DeepanshuKumar-pc4lm
@DeepanshuKumar-pc4lm 10 ай бұрын
Love you sir
@michaeldort6123
@michaeldort6123 10 ай бұрын
Hey Chuck glad you’re back mate. I want to know what you think about the future of hacking? And applying AI into defense systems and drones. I’ve been following your channel for quite some time now and want to know what’s your take on this ? Hope to hear from you.
@michaelnorwood7722
@michaelnorwood7722 10 ай бұрын
You read my search history
@landless-wind
@landless-wind 10 ай бұрын
can you please make a video about ELB AWS also? plsssssssssssss plsssssssssssssssssss pleasssssssssssssssssssssseeee
@Fixyyb
@Fixyyb 10 ай бұрын
WE NEED A SETUP TOUR
@ankanroy2
@ankanroy2 10 ай бұрын
You don't need to go through the .git folder if you know some git commands like git log and commit so you can see all the commits in this specific repository without cating the master file
@sflux4593
@sflux4593 10 ай бұрын
I'm sure he knows that. Maybe he is simulating exploring the files without prior git knowledge.
@ankanroy2
@ankanroy2 10 ай бұрын
@@sflux4593 yeah I know
@RazoBeckett.
@RazoBeckett. 10 ай бұрын
😮😮
@thomasembo28
@thomasembo28 10 ай бұрын
hey netwerk chuk vraag je kan voor router steken mail scant virussen spam tegenhouden peis veel mensen spam beu zijn soort Latta panden tussen router data controleert dan mail binen krijg door router eigenlijke soort virus scanner router beschermt, zou jij zoo iks kunne uit vinden jij bedrijven en mensen zouden handigen zijn
@erikkalmar4965
@erikkalmar4965 10 ай бұрын
Always nice to see your work in this channel! I learn a lot from your videos! But i have a quesion, can we see some termux and android vulnerability in the future? I realy intrested what we can do with termux and how we can interact with other phones useing terminal. Like can we ssh in any phone or something like that? Sory about my english 😅
@startanmusicindie
@startanmusicindie 10 ай бұрын
Bro please do create own app video
@Man_of_Network
@Man_of_Network 10 ай бұрын
How to close LAN router fast Ethernet ports?
@amandarusso487
@amandarusso487 10 ай бұрын
Every time I am looking for something I need help with for my exams, I first search to see if network chuck made a video on it 😆
@iyconik1214
@iyconik1214 10 ай бұрын
would you make about hacking someone's phones and his file on it?
@6.mahnoor736
@6.mahnoor736 10 ай бұрын
Hey bro my Kali Linux tool osintgram error private api please fix my problem. 😂😂😂😂😂
@iamernestt1
@iamernestt1 10 ай бұрын
Can you bless us with a pegasus video
@webdesign_dee
@webdesign_dee 10 ай бұрын
yo finally
@CriticalHaterRD
@CriticalHaterRD 10 ай бұрын
Did you change the Tumbnail?
@ahmadabdallah8471
@ahmadabdallah8471 10 ай бұрын
Hi, Can a hacker bypass opt if yes make a video of how a hacker can bypass opt.
@Toastman43
@Toastman43 4 ай бұрын
How do I download nslookup command cuz I don’t have it
@anujdatar
@anujdatar 10 ай бұрын
To check logs in a git repo, the recommended way is the use `git log` or `git log --oneline` instead of digging into the `.git` folder.. that could lead to errors if you don't know what you're doing
@aagamaperla
@aagamaperla 10 ай бұрын
8 seconds ago? wow
@xaens07
@xaens07 9 ай бұрын
Ay NetworkChuck. Whats the tool you're using to write / draw on your screen?
@michaeldort6123
@michaeldort6123 9 ай бұрын
Using Kali and python
@neonpurush3960
@neonpurush3960 10 ай бұрын
Anyone tell me how can i start learn Python language, i don't know anything about computer languages i want to learn from 0 online please tell me.
@philipm3173
@philipm3173 10 ай бұрын
Code academy
@rashidxd
@rashidxd 10 ай бұрын
24:36 - why python virtual env? because you can create multiple environments where you could install different versions of a package. For example, if you install a python app that requires specific version of the Request module, you need to install that version in your system, but now the version you installed is not compatible with other apps in your system. To solve the problem, you can create multiple virtual environments where you can install different versions of packages based on the requirements of the app.
@ethantony1225
@ethantony1225 10 ай бұрын
I Know why they named it grey hat, cause a black hat is a hacker that steal your information, white hats are GOOD hackers( AKA Ethical hacker) and they also need permission. Grey hats don't need permissions because they are COOL
@nazzak2093
@nazzak2093 10 ай бұрын
The setting on level 2 is so ridiculous. I can’t see why the AWS came up with this. Where they thinking of AWS family where all companies can access other companies stuff ?
@azkamustofa1768
@azkamustofa1768 10 ай бұрын
hola
@TimoTyshaw
@TimoTyshaw 10 ай бұрын
Could you do a video on books you'd recommend reading. General books that can correlate to IT, but overall beneficial recommendations?!
i HACKED my wife’s web browser (it’s SCARY easy!!)
14:36
NetworkChuck
Рет қаралды 3,9 МЛН
Trágico final :(
01:00
Juan De Dios Pantoja
Рет қаралды 16 МЛН
How did CatNap end up in Luca cartoon?🙀
00:16
LOL
Рет қаралды 4,9 МЛН
The World's Fastest Cleaners
00:35
MrBeast
Рет қаралды 128 МЛН
Зомби Апокалипсис  часть 1 🤯#shorts
00:29
INNA SERG
Рет қаралды 6 МЛН
10 HomeKit Automations for Motion, Doors, Temp, and More!
10:50
Stephen Robles
Рет қаралды 9 М.
3 Levels of WiFi Hacking
22:12
NetworkChuck
Рет қаралды 1,4 МЛН
learning php course for beginner #2
8:18
Gwapileweb
Рет қаралды 3
Plundering AWS S3 Buckets - HackTheBox
1:04:04
John Hammond
Рет қаралды 73 М.
AWS Cloud Penetration Testing Explained with Example
53:21
Cloud Security Podcast
Рет қаралды 4,2 М.
How Hackers Hack WiFi using OSINT
7:27
CyberSudo
Рет қаралды 4,1 М.
30 Windows Commands you CAN’T live without
14:35
NetworkChuck
Рет қаралды 2,1 МЛН
Cloud Hacking: Common Attacks & Vulnerabilities
22:59
NahamSec
Рет қаралды 8 М.
how did I NOT know about this?
23:06
NetworkChuck
Рет қаралды 857 М.
I Tried The New Logitech Keyboard... (So You Don't Have To.)
20:13
На iPhone можно фоткать даже ночью😳
0:30
GStore Mobile
Рет қаралды 913 М.
ЭТОТ ЗАБЫТЫЙ ФЛАГМАН СИЛЬНО ПОДЕШЕВЕЛ! Стоит купить...
12:54
Thebox - о технике и гаджетах
Рет қаралды 55 М.