flâneur — a map of the web's best reading

AWS IAM Privilege Escalation – Methods and Mitigation

rhinosecuritylabs.com · 4,860 words · saved by 1 readers

At Rhino Security Labs, we do a lot of penetration testing for AWS architecture, and invest heavily in related AWS security research. This post will cover our recent findings in new IAM Privilege Escalation methods – 21 in total – which allow an attacker to escalate from a compromised low-privilege account to full administrative privileges. In addition to many new privilege escalation routes, we’ve created a scanning tool (available on Github) to identify these vulnerabilities in your own AWS user account. if you have an account with IAM read access for all users, the script can be run against every user in the account to detect these vulnerabilities account-wide. Note: This is a longer, more meaty blog post. For those just looking for the remediation steps and scanner…. Cloud privilege escalation and IAM permission misconfigurations have been discussed in the past, but most posts and tools only offer ‘best practices’ and not context on what’s actually exploitable. By documenting s

Strategic and Technical Blog AWS AWS IAM Privilege Escalation – Methods and Mitigation Spencer Gietzen Intro: AWS Privilege Escalation Vulnerabilities At Rhino Security Labs, we do a lot of penetration testing for AWS architecture , and invest heavily in related AWS security research. This post will cover our recent findings in new IAM Privilege Escalation methods – 21 in total – which allow an attacker to escalate from a compromised low-privilege account to full administrative privileges. In addition to many new privilege escalation routes, we’ve created a scanning tool ( available on Github

Explore this link on the map →

related reading