In
this article, the focus is one a software program named “Sandcastle”. It is a
Bucket Enumeration Tool, which is named as Amazon AWS S3. It is important to
mention here that it is a tool, which is based on Python. The older name of
this tool was bucketCrawler. The article
first explains what Amazon AWS S3 is. It is a cloud storage service provided by
Amazon over the internet. If a user wants to store his/her data such as videos,
files or photos, then he/she will have to use one of the AWS regions to create
his/her own bucket. Then any given number of objects can be uploaded to that
particular bucket. So, objects and resources are actual resources, whereas an
API is produced by Amazon AWS S3 to handle them. Then the article explains the
process of creating a bucket with Sandcastle – AWS S3 bucket enumeration tool.
The whole coding process is elaborated in brief
After giving a short explanation for
the process, the article has mentioned status codes for the buckets, like if
status code is 404, then it means that “Bucket was not found”, or code 403,
which shows that “Access is denied”. The article has also given a hyperlink to
download Sandcastle from the web. This article is a brief one to introduce
Sandcastle, as one of the important AWS S3 bucket tool used by users to keep
their data safe and secure. This brief article was helpful for me as a student
of cybersecurity to understand how a bucket enumeration tool actually works,
and what users can get from it. This article will help me to get the basis of Sandcastle
tool, and when I will read more data and articles on this topic, I will get
more insights for this tool, which can be beneficial for users in so many ways.
Bibliography of Sandcastle AWS S3 Bucket Enumeration Tool
Darknet.org.uk. (2020). Sandcastle – AWS S3
Bucket Enumeration Tool. Retrieved March 28, 2020, from
https://www.darknet.org.uk/2020/03/sandcastle-aws-s3-bucket-enumeration-tool/?utm_source=rss&utm_medium=social&utm_campaign=darknetfeed