Threagile / threagile

Agile Threat Modeling Toolkit
https://threagile.io
MIT License
577 stars 126 forks source link

Risk - Cross Account Takeover #28

Open BenjiTrapp opened 2 years ago

BenjiTrapp commented 2 years ago

Risk: Misconfigured Cross Account Access (Account A -> Account B) can lead to a takeover of another account and enables an attacker to move lateral and compromise a multi tenant setup and break isolation of VPCs/Accounts