You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
These issues include fixing the information disclosure of the index names for private AWS-managed ElasticSearch clusters, enforcing host header authentication to make the public clusters more difficult to access, and AWS has taken steps to reach out to customers with public ElasticSearch clusters.
ramimac
changed the title
[Contribution] Add security issue or vulnerability
[Contribution] 2018 Duo Security - ElasticSearch index name disclosure
Apr 18, 2024
ramimac
added a commit
to ramimac/open-cvdb
that referenced
this issue
Apr 19, 2024
Summary (give a brief description of the issue)
References (provide links to blogposts, etc.)
https://duo.com/blog/beyond-s3-exposed-resources-on-aws
The text was updated successfully, but these errors were encountered: