Skip to main content
Back to registry

aws-penetration-testing

sickn33/antigravity-awesome-skills

Provide comprehensive techniques for penetration testing AWS cloud environments. Covers IAM enumeration, privilege escalation, SSRF to metadata endpoint, S3 bucket exploitation, Lambda code extraction, and persistence techniques for red team operations.

Installs75
Install command
npx skills add https://github.com/sickn33/antigravity-awesome-skills --skill aws-penetration-testing
Security audits
Gen Agent Trust HubFAIL
SocketWARN
SnykFAIL
About this skill
Provide comprehensive techniques for penetration testing AWS cloud environments. Covers IAM enumeration, privilege escalation, SSRF to metadata endpoint, S3 bucket exploitation, Lambda code extraction, and persistence techniques for red team operations. Identify the compromised identity and permissions: Exploit SSRF to access metadata endpoint (IMDSv1): For IMDSv2 (token required): Fargate Container Credentials: These permissions are equivalent to administrator: Systems Manager allows command execution on EC2 instances: Convert CLI credentials to console access: Note: Kali/Parrot/Pentoo Linux triggers GuardDuty alerts based on user-agent. Use Pacu which modifies the user-agent. Must: Must Not: Should: For advanced techniques including Lambda/API Gateway exploitation, Secrets Manager & KMS, Container security (ECS/EKS/ECR), RDS/DynamoDB exploitation, VPC lateral movement, and security checklists, see references/advanced-aws-pentesting.md . This skill is applicable to execute the workflow or actions described in the overview. - AWS CLI configured with credentials - Valid AWS credentials (even low-privilege) - Understanding of AWS IAM model - Python 3, boto3 library - Tools: Pacu, Prowler, ScoutSuite, SkyArk - IAM privilege escalation paths - Extracted credentials and secrets - Compromised EC2/Lambda/S3 resources - Persistence mechanisms - Security audit findings - Obtain written...

Source description provided by the upstream skill listing. Community reviews and install context appear in the sections below.

Community Reviews

Latest reviews

Sign in to review

No community reviews yet. Be the first to review.

Browse this skill in context
FAQ
What does aws-penetration-testing do?

Provide comprehensive techniques for penetration testing AWS cloud environments. Covers IAM enumeration, privilege escalation, SSRF to metadata endpoint, S3 bucket exploitation, Lambda code extraction, and persistence techniques for red team operations.

Is aws-penetration-testing good?

aws-penetration-testing does not have approved reviews yet, so SkillJury cannot publish a community verdict.

What agent does aws-penetration-testing work with?

aws-penetration-testing currently lists compatibility with codex, gemini-cli, opencode, kimi-cli, amp, github-copilot.

What are alternatives to aws-penetration-testing?

Skills in the same category include telegram-bot-builder, flutter-app-size, sharp-edges, iterative-retrieval.

How do I install aws-penetration-testing?

npx skills add https://github.com/sickn33/antigravity-awesome-skills --skill aws-penetration-testing

Related skills

More from sickn33/antigravity-awesome-skills

Related skills

Alternatives in Software Engineering