A repository for technical notes and thoughts.
This area contains technical notes relating to cloud, automation, and more for both Azure and AWS.
Below are selected AWS-related security and other articles.
-
Principal Mapper (pmapper) -- This tool uses the existing simulator APIs to determine which users and roles have access to each other. It provides a query interface on top of this data and can help fid prvilege escalation paths.
-
ScoutSuite -- Open source multi-cloud security-auditing tool, which enables security posture assessment of cloud environments, which gathers configuration data for manual inspection and highlights risk areas.