Cloud Vulnerability Scanners
trivy clair dagda twistlock sysdig
Define S3
AWS Simple Storage Service
S3 Enumeration
Check source code
Scanners (bucketkicker, S3Scanner, S3Inspector)
AWS Enumerations
Account IDs Social Media Posting Roles Keys/Credentials Password Reuse Hosted Vulnerable Apps IM Role Misconfigurations
AWS Pentesting Tools
PACU
CloudGoat 2
AWS_pwn
AWS IAM Privilege Escalation Techniques
Create EC2 Instance with Existing Profile
Custom Permissions
Add yourself to new group