Hacker News new | ask | show | jobs
by AaronFriel 2505 days ago
I just checked an EC2 console and I can see 19,356 snapshots created by other users.

I am so confused.

It would be trivial to make finding a snapshot require knowing a unique ID like an AMI.

And, why do I need to be able to search for 1000s of customers' public snapshots in the EC2 console? What conceivable purpose does that serve except being a giant opsec fail?

2 comments

looks like some bigger images were of wiki[pedia|media] backups so I guess easy-to-find/use public data?
That’s per region, too.