用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
直接命令不会经过审查 Prompt;运行前请先检查来源。
npx skills add https://github.com/CyberStrikeus/CyberStrike --skill t1619-cloud-storage-object-discovery命令会保持在同一行。复制前请横向滚动并检查完整内容。
想先保存到本地?可下载 SkillsMP 当前能够提供的文件。
基于 SOC 职业分类
正在显示 SKILL.md
| name | T1619_cloud-storage-object-discovery |
| description | Adversaries may enumerate objects in cloud storage infrastructure. |
| category | information-gathering |
| version | 18.1 |
| author | cyberstrike-official |
| tags | ["mitre-attack","enterprise","t1619","discovery","iaas"] |
| technique_id | T1619 |
| tactic | discovery |
| all_tactics | ["discovery"] |
| platforms | ["IaaS"] |
| mitre_url | https://attack.mitre.org/techniques/T1619 |
| tech_stack | ["cloud"] |
| cwe_ids | ["CWE-200"] |
| chains_with | [] |
| prerequisites | [] |
| severity_boost | {} |
Adversaries may enumerate objects in cloud storage infrastructure. Adversaries may use this information during automated discovery to shape follow-on behaviors, including requesting all or specific objects from cloud storage. Similar to File and Directory Discovery on a local host, after identifying available storage services (i.e. Cloud Infrastructure Discovery) adversaries may access the contents/objects stored in cloud infrastructure.
Cloud service providers offer APIs allowing users to enumerate objects stored within cloud storage. Examples include ListObjectsV2 in AWS and List Blobs in Azure .
Platforms: IaaS
Identify Attack Surface: Determine if the target environment is susceptible to Cloud Storage Object Discovery by examining the target platforms (IaaS).
Assess Existing Defenses: Review whether mitigations for T1619 are in place. If defenses are absent or misconfigured, this technique may be exploitable.
Execute Test: Use tools and methods described in the MITRE ATT&CK page and external references below.
Note: No Atomic Red Team tests available for this technique. See Atomic Red Team GitHub for updates.
Restrict granting of permissions related to listing objects in cloud storage to necessary accounts.
| Finding | Severity | Impact |
|---|---|---|
| Cloud Storage Object Discovery technique applicable | Medium |
| Discovery |
| CWE ID | Title |
|---|---|
| CWE-200 | Exposure of Sensitive Information |