Cloud Storage Metadata provides contextual information about cloud storage infrastructure and its associated activity. This data may include attributes such as storage name, size, owner, permissions, creation date, region, and activity metadata. It is essential for monitoring, auditing, and identifying anomalies in cloud storage environments. Examples:
This data component can be collected through the following measures:
Enable Logging for Metadata Collection
GetBucketAcl, GetBucketPolicy, and HeadBucket API calls.storage.buckets.get and storage.buckets.update.HEAD or GET requests to containers.Centralized Log Aggregation
API Polling
aws s3api get-bucket-acl --bucket company-sensitive-dataaz storage container show --name customer-recordsgcloud storage buckets describe user-uploads| Name | Channel |
|---|---|
| AWS:CloudTrail | Post-authentication metadata enumeration from GUI session |
| m365:unified | AnonymousLinkCreated |
| saas:box | collaboration.invite |
| saas:dropbox | Shared link created to external account |