Cloud Security Podcast cover image

AWS Cloud Penetration Testing Explained with Example

Cloud Security Podcast

00:00

AWS Authentication - Is There a Permission to Connect to an EC2 Instance?

SSM is a way that it allows you to connect to specifically SSM send command or SSM was at start session. We did a penetration test where the developers had some IM permissions and they use teleport to guard their access to, you know, the EC2 instances. Here's another one that's kind of interesting. You can attack Lambda from the front door, which is like the code running in the Lambda function. But let's say you give somebody access to create a Lambda and attach an IM role to it, IM pass roll. Right? If there is an IM role that trusts the Lambda service that has administrative access, you can just kind of write code in

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app