一位 AWS S3 用户发帖称,他在第二天收到一张 1000 美元的账单,但账单是空的。
Apparently the problem lies mainly in the bucket calls, which create a cost, but the problem was that this user created a bucket with a name like “bucket-crap”, said name was the one that came by default in an application, apparently widely used by companies.
然而,这一切都揭示了这项服务可能存在一个严重的问题,因为它可能导致现在所谓的“DoW”(“钱包拒绝”),因为任何恶意用户,只要知道该存储桶的名称,就可以对该存储桶进行数千次调用。并产生高昂的费用,因为即使您无权访问该存储桶,对其进行调用(即使被拒绝)也会产生费用。