What Can You Do With a Leaked Cognito Identity Pool ID?
Leaking a Cognito Identity Pool ID is often dismissed as a low-impact information disclosure. But when the IAM policy attached to the unauthenticated role is misconfigured, that "low-impact" leak becomes a direct path into the cloud infrastructure.
W...
hacktus.tech3 min read