nccgroup / ScoutSuite

Multi-Cloud Security Auditing Tool
GNU General Public License v2.0
6.36k stars 1.03k forks source link

feature request - add privilege escalation checks #7

Open x4v13r64 opened 6 years ago

x4v13r64 commented 6 years ago

Implement privilege checks similar to: https://github.com/RhinoSecurityLabs/Security-Research/blob/master/tools/aws-pentest-tools/aws_escalate.py https://rhinosecuritylabs.com/aws/aws-privilege-escalation-methods-mitigation/

Also check if IAM roles are assigned with "excessive" permissions.

x4v13r64 commented 5 years ago

This could be a tab similar as Attack Surface

x4v13r64 commented 5 years ago

Related to https://github.com/nccgroup/ScoutSuite/issues/364.