• @cloud_herder
    link
    389 months ago

    To be fair, it’s probably more about the IT contractors and consulting firms that didn’t implement security policies or configurations correctly on the S3 buckets for the governments they’re working for. The AWS products aren’t opening up things to the public internet without auth. Which I bet most of you knew.

    Example: Accenture left a trove of highly sensitive data on public servers (2017)