Hacker News new | ask | show | jobs
by syntheticcdo 2152 days ago
If you have CloudFront in front of your bucket, the bucket shouldn't even be world-readable, let alone world-writable. Permission should be delegated to CF to read out of the bucket.