2026 Critical Cloud Control Plane Detection: Public Storage Bucket Exposure via ACL/Policy Change (S3/Azure/GCP)

This rule detects administrative changes to cloud storage configurations (AWS S3, Azure Blob, and GCP Storage) that result in public or anonymous read/write access to buckets or containers, which could lead to unauthorized data exposure.