Performing Cloud Log Forensics With Athena

Uses AWS Athena to query CloudTrail, VPC Flow Logs, S3 access logs, and ALB logs for forensic investigation. Covers CREATE TABLE DDL with partition projection, forensic SQL queries for detecting unauthorized access, data exfiltration, lateral movement, and privilege escalation. Use when investigating AWS security incidents or building cloud-native forensic workflows at scale.

theheavenlyd3mon 12e5563 4 files · 49.5 KB Updated 28 repo stars

File contents

theheavenlyd3mon/hermes-profiles/tree/main/profiles/cyber-blue-cloud/skills/Anthropic-Cybersecurity-Skills/skills/performing-cloud-log-forensics-with-athena commit 12e55636b2

Frequently asked questions

npx skillmds add theheavenlyd3mon/performing-cloud-log-forensics-with-athena