Уровень 0 · материалов: 3
В кластер входят документы о причинах возникновения непредвиденных затрат при использовании облачных объектных хранилищ, и не входят документы о технических настройках доступа или оптимизации производительности этих сервисов.
Общие признаки: непредвиденные расходы на облачные сервисы, проблемы биллинга в S3 и объектных хранилищах, финансовые уязвимости облачной инфраструктуры
Группа выше: Риски и критика облачных сервисов
Смысл: The main idea is to warn cloud service users about how automated third-party tools, specifically Google's Feedfetcher, can cause massive unexpected data egress costs on AWS S3, potentially leading to a new type of financial attack.
A user incurred a huge AWS bill because Google's Feedfetcher bot repeatedly downloaded images from S3 for a Google Spreadsheet, illustrating a potential 'Denial of Bank Account' attack vector.
Смысл: The main idea is that AWS S3 bucket names are globally unique and the owners are charged for all incoming requests, including unauthorized ones. This creates a financial vulnerability where a name collision with a default configuration in popular software can lead to massive billing surprises and potential data leaks for others.
A user incurred a $1,300 AWS bill because a popular open-source tool used their S3 bucket name as a default placeholder, triggering millions of billable unauthorized requests.
Смысл: The main idea is a warning against using Selectel's cold object storage due to non-transparent billing caused by hidden service containers that store abandoned file fragments, which the provider refuses to automate the cleanup of.
A user warns against Selectel's cold storage after discovering hidden, billable service containers that accumulate abandoned file fragments with no easy way to manage or monitor them.