Media Summary: We start off as a low-privileged user who can perform IAM Get and IAM List on all resources. In addition, this user can assume a ... We start off as a fairly high-privileged user who can perform multiple IAM and EC2 API calls. Using these permissions, it was ... In today's video, we're diving deep into the " Lanbda

Hacking In The Cloud Cloudgoat Lambda Privesc - Detailed Analysis & Overview

We start off as a low-privileged user who can perform IAM Get and IAM List on all resources. In addition, this user can assume a ... We start off as a fairly high-privileged user who can perform multiple IAM and EC2 API calls. Using these permissions, it was ... In today's video, we're diving deep into the " Lanbda Starting off as a low-privileged user, a misconfiguration in the The objective of this scenario was to gain access to an RDS instance. We were provided with the credentials of two different users. Starting with no access to the AWS account, we compromise a webapp hosted in an EC2 instance by finding both an SSRF and ...

This video takes you through the first challenge in the Resources: Enroll in my Courses (search for Tyler Ramsbey) Support me on Ko-Fi ... This video covers an attack scenario very similar to how the US Bank Capital One got breached. goes over the attack ... Purchase my Bug Bounty Course here bugbounty.nahamsec.training Buy Me Coffee: ... Join up and get everything you *actually* need to start

Photo Gallery

Hacking in the Cloud - Cloudgoat: lambda_privesc
Hacking in the Cloud - Cloudgoat: iam_privesc_by_attachment
CloudGoat Lambda PrivEsc Walkthrough
Hacking in the Cloud - Cloudgoat: iam_privesc_by_rollback
Hacking in the Cloud - Cloudgoat: ec2_ssrf
Hacking in the Cloud - Cloudgoat: vulnerable_lambda
Hacking in the Cloud - Cloudgoat: rce_web_app
Hacking in the Cloud - Cloudgoat: ecs_takeover
Hacking in the Cloud - Cloudgoat: cloud_breach_s3
Hacking Cloud – 1(AWS) A(manual cloudgoat scenarios)
CloudGoat Vulnerable Lambda Walkthrough
Abusing Vulnerable Lambda Functions! - Part 1 -- (vulnerable_lambda)
View Detailed Profile
Hacking in the Cloud - Cloudgoat: lambda_privesc

Hacking in the Cloud - Cloudgoat: lambda_privesc

We start off as a low-privileged user who can perform IAM Get and IAM List on all resources. In addition, this user can assume a ...

Hacking in the Cloud - Cloudgoat: iam_privesc_by_attachment

Hacking in the Cloud - Cloudgoat: iam_privesc_by_attachment

We start off as a fairly high-privileged user who can perform multiple IAM and EC2 API calls. Using these permissions, it was ...

CloudGoat Lambda PrivEsc Walkthrough

CloudGoat Lambda PrivEsc Walkthrough

In today's video, we're diving deep into the " Lanbda

Hacking in the Cloud - Cloudgoat: iam_privesc_by_rollback

Hacking in the Cloud - Cloudgoat: iam_privesc_by_rollback

This is the second scenario in the

Hacking in the Cloud - Cloudgoat: ec2_ssrf

Hacking in the Cloud - Cloudgoat: ec2_ssrf

Starting off as a low-privileged user, a misconfiguration in the

Hacking in the Cloud - Cloudgoat: vulnerable_lambda

Hacking in the Cloud - Cloudgoat: vulnerable_lambda

This is the first scenario in the

Hacking in the Cloud - Cloudgoat: rce_web_app

Hacking in the Cloud - Cloudgoat: rce_web_app

The objective of this scenario was to gain access to an RDS instance. We were provided with the credentials of two different users.

Hacking in the Cloud - Cloudgoat: ecs_takeover

Hacking in the Cloud - Cloudgoat: ecs_takeover

Starting with no access to the AWS account, we compromise a webapp hosted in an EC2 instance by finding both an SSRF and ...

Hacking in the Cloud - Cloudgoat: cloud_breach_s3

Hacking in the Cloud - Cloudgoat: cloud_breach_s3

This scenario is based off of a real

Hacking Cloud – 1(AWS) A(manual cloudgoat scenarios)

Hacking Cloud – 1(AWS) A(manual cloudgoat scenarios)

Hacking

CloudGoat Vulnerable Lambda Walkthrough

CloudGoat Vulnerable Lambda Walkthrough

This video takes you through the first challenge in the

Abusing Vulnerable Lambda Functions! - Part 1 -- (vulnerable_lambda)

Abusing Vulnerable Lambda Functions! - Part 1 -- (vulnerable_lambda)

Resources: Enroll in my Courses (search for Tyler Ramsbey) https://academy.simplycyber.io Support me on Ko-Fi ...

Attack & Detection of a Cloud Security Breach w/ @0xd4y  | Detection Opportunities EP 3

Attack & Detection of a Cloud Security Breach w/ @0xd4y | Detection Opportunities EP 3

This video covers an attack scenario very similar to how the US Bank Capital One got breached. @0xd4y goes over the attack ...

Cloud Hacking: The Basics

Cloud Hacking: The Basics

Purchase my Bug Bounty Course here bugbounty.nahamsec.training Buy Me Coffee: ...

How I Hacked the Cloud—A Step-by-Step Roadmap

How I Hacked the Cloud—A Step-by-Step Roadmap

Join up and get everything you *actually* need to start

Abusing Vulnerable Lambda Functions! - Part 2 -- (vulnerable_lambda)

Abusing Vulnerable Lambda Functions! - Part 2 -- (vulnerable_lambda)

Resources: Enroll in my Courses (search for Tyler Ramsbey) https://academy.simplycyber.io Support me on Ko-Fi ...