Cloud — topics
Cloud control-plane attack primitives. See cloud-red-team for ordering.
Universal
AWS — fundamentals
- aws-iam-enum · aws-instance-metadata
- aws-sts-assume-role
- aws-s3-attacks · aws-lambda-attacks
- aws-secrets-manager · aws-cross-account
- aws-organisations-abuse
AWS — modern persistence and evasion
- aws-sso-device-code-phishing
- aws-iam-eventual-consistency-persistence
- aws-cloudtrail-policy-size-evasion
- aws-rogue-oidc-idp-persistence
Azure / Entra — fundamentals
- entra-id-enum · az-cli-tokens
- managed-identities
- azure-key-vault-attacks
- service-principal-abuse
- app-registration-abuse
- entra-conditional-access-bypass
Azure / Entra — 2024-2026 research
- entra-actor-token-cross-tenant
- entra-cross-tenant-sync-abuse
- entra-device-code-prt-pivot
- entra-connect-exploitation-2025
- azure-pipelines-logging-command-injection
GCP
Kubernetes
- k8s-rbac-abuse · k8s-service-account-tokens
- k8s-host-mount-escape · k8s-privileged-pod
- k8s-etcd-attacks · k8s-admission-controllers
- k8s-ingressnightmare