IAM

Cloud Security

AWS IAM Privilege Escalation Paths

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Cloud Security

GCP Service Account Impersonation and Escalation

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Cloud Security

AWS EKS Security: IRSA and Pod Identity

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Cloud Security

AWS Organizations and Service Control Policies (SCP) Security

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Cloud Security

GCP Workload Identity and Cloud Functions Security

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Cloud Security

GCP Organization Policy and IAM Conditions

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Cloud Security

AWS Cognito Misconfigurations and Identity Pool Abuse

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Cloud Security

Envelope Encryption and KMS Patterns

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Security

Just-in-Time Access and Secrets Rotation

Disclaimer: This article is provided strictly for educational purposes and authorized security testing. Only run these t...
Tools & Defense

AWS Security Fundamentals and Attack Techniques: IAM, S3, and the Metadata Service

A practical primer on attacking and defending AWS: IAM enumeration, S3 misconfigurations, IMDS abuse, and Pacu.
Cloud Security

AWS IAM Privilege Escalation Paths: From Low-Priv Credentials to Account Takeover

A practical look at common AWS IAM privilege escalation paths, PoC commands, and the blue-team controls that shut them down.
Cloud Security

Attacking and Securing Amazon S3: Buckets, Policies, and Presigned URLs

A practical guide to enumerating, exploiting, and hardening Amazon S3 buckets, ACLs, policies, and presigned URLs.
Cloud Security

Enumerating and Exploiting AWS with Pacu

A practical walkthrough of using Pacu to enumerate AWS identities, IAM permissions, and discover privilege escalation paths.
Cloud Security

GCP Privilege Escalation: Abusing Service Account Impersonation and IAM Misconfigurations

How attackers abuse actAs, setIamPolicy, and service account impersonation to escalate privileges in Google Cloud, with blue-team defenses.
Cloud Security

Attacking AWS STS, AssumeRole, and Cross-Account Trust

How sts:AssumeRole, weak trust policies, and missing ExternalId enable cross-account pivots, plus blue-team detection.