Knowledge base
Cloud penetration testing guides
Four long-form, primary-sourced guides. Every provider rule quoted here comes from the provider’s own published policy, linked at the foot of each guide.
All guides
-
Cloud penetration testing rules: what AWS, Azure and Google Cloud allow
Each hyperscaler publishes what you may test, what needs notice and what is prohibited outright. The three policies are close enough to be confused and different enough to matter. Read guide -
Shared responsibility: where the scope line falls in a cloud assessment
The responsibility model is not a slide. It decides what a tester may look at, what they will find, and what has to be reported to the provider instead of the client. Read guide -
Cloud identity attack paths: privilege escalation on AWS, Azure and Google Cloud
Most cloud compromises are a chain of legitimate permissions. Here are the documented links each provider warns about, and what actually breaks the chain. Read guide -
Managed Kubernetes in a cloud assessment: RBAC, workloads and the pivot
EKS, AKS and GKE sit on both sides of the responsibility line. Here is what a tester can look at, which RBAC permissions escalate, and why the cluster is a door into the account. Read guide