Hacktricks Aws
Use Service Control Policies (SCPs) to limit the maximum available permissions at the account level.
Instead of just reading the page, use it as a : hacktricks aws
Creating a role that looks benign but has a trust relationship allowing a compromised user to assume it at any time. Use Service Control Policies (SCPs) to limit the
Leverage AWS’s managed threat detection to spot unusual behavior, such as API calls from known malicious IPs or unusual data exfiltration patterns. HackTricks AWS focuses on
You might think "PassRole just allows attaching a role to a service. That seems fine."
Unlike the official AWS documentation (which tells you how to build things securely ), HackTricks AWS focuses on