Cloud Attack

Cloud control-plane exploitation for AWS, Azure/Entra, GCP, and Alibaba Cloud: IAM/RAM privilege escalation, impersonation, cross-account trust, serverless/compute control, and cloud-native persistence. Host OS persistence/C2 after root/SYSTEM belongs to /post. K8s RBAC belongs to /k8s. Operator chooses next modules; new identities default to /cloud-recon first.

pale-knight 4702e19 10 files · 24.1 KB Updated

File contents

pale-knight/redteam-skill/tree/main/skills/cloud-attack commit 4702e19d8a

Frequently asked questions

npx skillmds@latest add pale-knight/cloud-attack