|
|
|
|
|
by cameronh90
2154 days ago
|
|
The technology to do it does exist likely on hardware you possess. The trusted computed platform lets you build a signed OS that encrypts its data using keys on the TPM. Using this, you could build an S3 implementation that stores customer data, but doesn’t let you access it. It’s probably not a good idea to make a system with no human fallback, but it IS possible with current, non-magic technology. |
|
Amazon does take privacy and security very seriously, but these systems are run by people. Attacks like the recent Twitter attack could work for various AWS services.
Source: I used to work in EC2 Networking.