Hack my S3: We Simulated the Breach — Here's What We Learned
May 8, 2025
Get the GiveawayWe’re breaking into S3 — not in theory, but in practice. This episode features a hands-on attack simulation with Mitigant, where we run real AWS breach techniques and see what gets caught (and what doesn’t).
From SSRF pivots to credential abuse, we put Anvilogic’s open-source AWS Detection Packs and Threat Scenarios to the test — and drop some lessons learned for defenders looking after S3s.
Buckets were breached. Detections were challenged. Hygiene checklists were made.

Alex Hurtado
Detection Dispatch Host, Anvilogic

Kennedy Torkura
Co-Founder & CTO, Mitigant
Additional Resources
Podcast