detecting-aws-iam-privilege-escalation

mukul975/detecting-aws-iam-privilege-escalation · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Identify AWS IAM privilege escalation paths by analyzing policies for dangerous permission combinations and least-privilege violations using boto3 and Cloudsplaining-style analysis.

SKILL.md

Files

This skill is a package of 4 files. Install with the command above, or download the folder.

  • 📄SKILL.md entry
  • 📁references
  • 📄api-reference.md 2.2 KB
  • 📁scripts
  • ⚙️agent.py 9.3 KB
  • 📄LICENSE 11.0 KB

Related

  1. iam · itsmostafa bundle
    Manage AWS Identity and Access Management for users, roles, policies, and permissions. Create IAM policies, configure cross-account access, set up service roles, troubleshoot permission errors, and enforce least-privilege security.
    1.1k
    repo stars
  2. cloud-security · alirezarezvani bundle
    Assess cloud infrastructure for security misconfigurations, IAM privilege escalation paths, S3 public exposure, open security group rules, and IaC security gaps across AWS, Azure, and GCP with MITRE ATT&CK mapping.
    20.4k
    repo stars
  3. exploiting-aws-with-pacu · mukul975 bundle
    Use Pacu modules for AWS privilege escalation, persistence, and backdooring during authorized penetration tests.
    24.6k
    repo stars
  4. performing-aws-privilege-escalation-assessment · mukul975 bundle
    Identify and test IAM misconfigurations that allow privilege escalation in AWS environments using Pacu, CloudFox, Principal Mapper, and manual analysis.
    24.6k
    repo stars
  5. performing-cloud-native-threat-hunting-with-aws-detective · mukul975 bundle
    Hunt for threats in AWS environments using Detective behavior graphs, entity investigation timelines, GuardDuty finding correlation, and automated entity profiling across IAM users, EC2 instances, and IP addresses.
    24.6k
    repo stars
  6. detecting-aws-cloudtrail-anomalies · mukul975 bundle
    Query AWS CloudTrail events with boto3, build statistical baselines of normal API activity, and detect anomalies such as unusual event sources, geographic anomalies, high-frequency API calls, and first-time API usage patterns.
    24.6k
    repo stars

Frequently asked questions

How do I install the detecting-aws-iam-privilege-escalation skill?

Run npx skillmds add mukul975/detecting-aws-iam-privilege-escalation in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the detecting-aws-iam-privilege-escalation skill do?

Identify AWS IAM privilege escalation paths by analyzing policies for dangerous permission combinations and least-privilege violations using boto3 and Cloudsplaining-style analysis. It is listed under Security, DevOps & Infra, Cloud Platforms, Vulnerability Scanning on SkillMD.

Is detecting-aws-iam-privilege-escalation safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: PASS, Skill Scanner: PASS. Capability flags: executes scripts. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with detecting-aws-iam-privilege-escalation?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is detecting-aws-iam-privilege-escalation free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published detecting-aws-iam-privilege-escalation?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.