Performing Cloud Log Forensics With Athena

Uses AWS Athena to query CloudTrail, VPC Flow Logs, S3 access logs, and ALB logs for forensic investigation. Covers CREATE TABLE DDL with partition projection, forensic SQL queries for detecting unauthorized access, data exfiltration, lateral movement, and privilege escalation. Use when investigating AWS security incidents or building cloud-native forensic workflows at scale.

gabrielmoreira Updated 17 repo stars

File contents

gabrielmoreira/agent-skills-mirror/tree/main/mirrors/repos/xalgord@xalgorix/internal/tools/skills/data/cloud-security/performing-cloud-log-forensics-with-athena commit 06c2f9fe2e

Frequently asked questions

npx skillmds@latest add gabrielmoreira/performing-cloud-log-forensics-with-athena