
Scan for open S3 buckets and dump
A quick and dirty script to find unsecured S3 buckets and dump their contents 💧
The tool has 2 parts:
This script takes a list of domain names and checks if they're hosted on Amazon S3. Found S3 domains are output to file with their corresponding region in format "domain:region".

Install:
virtualenv venv && source ./venv/bin/activatepip install -r requirements.txtUsage:
$> python s3finder.py -o output.txt domainsToCheck.txt
Compatibility: Tested with Python 2.7 & 3.6
This script takes in a list of domains with regions made by s3finder.py. For each domain, it checks if there are publicly readable buckets and dumps them if so.
Usage: $> s3dumper.sh output.txt
Requirements:

Please make pull requests if you can improve on the code at all (which is certain as the code can be greatly optimized).
Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International (CC BY-NC-SA 4.0)