GCP bigquery.jobs.insert
Creates and submits a BigQuery job (query, load, export, or copy) that accesses or transforms data in BigQuery datasets.
Adversaries may access data from cloud storage. Many IaaS providers offer solutions for online data object storage such as Amazon S3, Azure Storage, and Google Cloud Storage.
View on MITRE ATT&CK →Creates and submits a BigQuery job (query, load, export, or copy) that accesses or transforms data in BigQuery datasets.
Exports data from a Cloud SQL instance to a Cloud Storage bucket.
Copies a blob within or between Azure Storage accounts or containers.
Copies an object from one S3 location to another, within or across buckets, optionally modifying metadata or encryption.
Creates a manual point-in-time snapshot of an RDS database instance for backup or recovery purposes.
Creates an Amazon Machine Image (AMI) from a running or stopped EC2 instance, capturing its disk state for reuse.
Exports an EC2 instance as a virtual machine image to an S3 bucket in a format such as OVF or VMDK.
Creates a point-in-time snapshot of an EBS volume, stored durably for backup or volume duplication.
Removes the resource-based policy from an S3 bucket, reverting to default access controls.
Retrieves (downloads) an object from an S3 bucket; logged in CloudTrail only when S3 data events are enabled.
Generates a time-limited SAS URL to access or download the data of an Azure managed disk.
Generates a time-limited SAS URL to access or download the data from an Azure VM disk snapshot.
Exports an Azure SQL Database to a BACPAC file stored in Azure Blob Storage.
Modifies settings on an RDS database instance, such as instance class, storage, networking, and access configuration.
Modifies the attributes of an RDS DB snapshot, such as sharing it with other AWS accounts.
Modifies the permissions of an EBS snapshot, such as making it public or sharing it with specific AWS accounts.
Sets the Access Control List (ACL) for an S3 bucket, controlling access for specific AWS accounts or predefined groups.
Applies or replaces the resource-based policy on an S3 bucket, defining who can access it and how.
Restores an RDS instance from a snapshot, enabling an attacker to access database contents by spinning up a copy.
Records the start of a copy operation for an EBS snapshot shared from another AWS account.
Records the creation of an EBS volume from a snapshot shared by another AWS account.
Starts an export of an RDS snapshot to Amazon S3 in Apache Parquet format for use in analytics.
Sets the IAM policy on a Cloud Storage bucket or object, controlling which principals can access it.