How to report another AWS server has performed vunerability scanning on my server?

0

Someone pointed Nessus at my EC2 machine and performed a 12minute vunerability scan - Their IP traces back to AWS - There are more than 200 entries across all logs in /var/log/httpd. I believe my server is fine, undamaged, but the actions should not go unrewarded.

How do I raise this with AWS?

Thanks

2개 답변
2

The best way to raise this is by using the report abuse form: https://support.aws.amazon.com/#/contacts/report-abuse.

Since the target was your EC2 instance, it's probably best to use the link in the form to sign in to your account first.

Ed
답변함 2년 전
profile pictureAWS
전문가
검토됨 2년 전
  • I was going to click Accept and give this a thumbs up however "Something went wrong" when attempting the process you suggested. I have, clicked the link to sign on to my account first, shared a contact email address, then filled in the form, indicated someone did port scanning, added extracts from my log files and then clicked Submit. This resulted in "Something went wrong". I repeated the process with the same result. There are no warnings attached anywhere else in the form indicating where I might have omitted a required value. Not good start to my day.

0

Two further attempts to submit my report at https://support.aws.amazon.com/#/contacts/report-abuse failed, and thus I have decided not to Accept the answer suggested above as others may experience the same result as I got. When I filled in the form and clicked submit, I again with "Something went wrong" error. I will raise a separate ticket on this.

For now, I emailed abuse@amazonaws.com, attached log files, provided source and target server IP and requesting support on the EC2 user who performed an unsolicited and unwelcome vunerability scan of my EC2 server.

답변함 2년 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인

관련 콘텐츠