AWS Security
Knowledge Base & Tools
Deep-dive AWS security covering misconfigurations, attack paths, IAM privilege escalation, threat hunting queries, serverless threats, and incident response — with interactive tools for every scenario.
Misconfiguration Reference
S3, IAM, IMDS, Security Groups, CloudTrail — detect & fix the most dangerous AWS misconfigs.
AWS Security Checklist
CIS AWS Foundations Benchmark v2 mapped hardening controls — filter by category.
AWS Threat Hunting Queries
CloudTrail Athena SQL queries for IAM abuse, credential theft, exfil, and lateral movement.
Attack Path Visualiser
S3 → account takeover, SSRF chains, ransomware kill chains. Step-by-step attack paths.
IAM Policy Analyser
Paste policy JSON — get risk findings, wildcard actions, dangerous combos, and fixes.
Cloud IR Checklist
AWS incident response playbooks — detection, containment, evidence, and eradication steps.
IAM Privilege Escalation
25 AWS + Azure + GCP escalation paths. Select starting permissions to find routes to admin.
Serverless Security Reference
Lambda threats, SSRF, secrets in env vars, supply chain, overprivileged roles, event injection.
Cloud Pentest Checklist
Enumeration, IAM, network, data — AWS/Azure/GCP pentest checklist by phase and scope.