Hi, I am rootcat | Redteam/Cloud Dude (he/him)| Hacking| Shitpost through your firewall| Fan of cats -allergic to cats| My Opinions belong to the fey folk| 🌈 |
Mar 14, 2023 • 12 tweets • 4 min read
You, hey you, yeah you; wann learn a bit about aws elastic compute hacking?
Just, me, you and an EC2
👇
An ec2 can be considered an interaction point, where it is possible to gain entry into aws of an org. This is a continuation of yesterdays thread:
My recent #aws threads always startet with creds, but how to get these creds will be the topic over the next days. #hacking#recon#cloud
Lets start here:
👇
Definitions first: #aws creds: classic name and passwords e.g for IAM, or aws access and secret keys
Outside: no creds, and no connections in any way to the org and its aws cloud to be tested
Mar 2, 2023 • 11 tweets • 4 min read
I pet a cat today and now my allergies are killing me, so obviously this calls for a follow up of, hey you found some #aws creds, what to do meow:
#cloud#hacking#Recon
👇
Step 1: First you gotta decide if this is more of a lazy space vibe kinda thing (A), or (B) calls for some illegal dirty acidcore and adjust your playlist accordingly:
A:
B: soundcloud.com/pitch1/i-can-h…
I give you a few pointers.
👇
Step 1: Say kiitos to @DrAzureAD then install AADInternals, set your phasers to stun and your POWAHSHELL to german to ensure MAXIMUM efficiency