diff --git a/Methodology and Resources/Cloud - AWS Pentest.md b/Methodology and Resources/Cloud - AWS Pentest.md index e795052..e20e269 100644 --- a/Methodology and Resources/Cloud - AWS Pentest.md +++ b/Methodology and Resources/Cloud - AWS Pentest.md @@ -149,6 +149,13 @@ $ python s3-objects-check.py -p whitebox-profile -e blackbox-profile ``` +* [cloudsplaining](https://github.com/salesforce/cloudsplaining) - An AWS IAM Security Assessment tool that identifies violations of least privilege and generates a risk-prioritized report + ```powershell + $ pip3 install --user cloudsplaining + $ cloudsplaining download --profile myawsprofile + $ cloudsplaining scan --input-file default.json + ``` + * [weirdAAL](https://github.com/carnal0wnage/weirdAAL/wiki) - AWS Attack Library ```powershell python3 weirdAAL.py -m ec2_describe_instances -t demo