Packt
Introduction to AWS Pentesting
Packt

Introduction to AWS Pentesting

包含在 Coursera Plus

深入了解一个主题并学习基础知识。
中级 等级

推荐体验

1 周 完成
在 10 小时 一周
灵活的计划
自行安排学习进度
深入了解一个主题并学习基础知识。
中级 等级

推荐体验

1 周 完成
在 10 小时 一周
灵活的计划
自行安排学习进度

您将学到什么

  • Understand and interpret AWS pentesting policies to ensure compliance.

  • Identify vulnerabilities in IAM, S3, Lambda, and EC2 configurations.

  • Utilize tools like Pacu and AWS CLI for effective pentesting.

  • Practice AWS pentesting through real-world scenarios like Flaws and CloudGoat.

要了解的详细信息

可分享的证书

添加到您的领英档案

作业

5 项作业

授课语言:英语(English)

了解顶级公司的员工如何掌握热门技能

Petrobras, TATA, Danone, Capgemini, P&G 和 L'Oreal 的徽标

该课程共有4个模块

In this module, we will delve into the essential concepts and terminologies necessary for AWS pentesting. We will start with an overview of the course, followed by an exploration of AWS-specific policies, keys, and common vulnerabilities in services like IAM, S3, EC2, and Lambda. Finally, we will discuss the critical role of ARNs and their relevance to pentesters. This foundational knowledge sets the stage for practical and advanced pentesting scenarios.

涵盖的内容

8个视频1篇阅读材料

In this module, we will introduce the essential tools used for AWS pentesting. Starting with the AWS CLI for basic environment interactions, we will then dive into advanced tools like Pacu for comprehensive pentesting frameworks. Additionally, we will explore AWS Bucket Dump and GrayhatWarfare for discovering and exploiting misconfigured S3 buckets. These tools are indispensable for automating and streamlining the pentesting process.

涵盖的内容

4个视频1个作业1个插件

In this module, we will tackle six hands-on challenges from the Flaws series, each simulating real-world AWS vulnerabilities. Starting with enumeration and weak S3 permissions, we will progress through advanced scenarios involving open repositories, unencrypted EBS volumes, and EC2 metadata exploitation. By the final challenge, we’ll address complex issues in IAM policies, Lambda, and REST APIs. These exercises are designed to build confidence and expertise in identifying and exploiting AWS-specific security flaws.

涵盖的内容

6个视频1个作业1个插件

In this module, we will use CloudGoat, a hands-on AWS pentesting training resource, to explore realistic security scenarios. Starting with the configuration of CloudGoat, we’ll tackle specific challenges such as IAM privilege escalation via rollback and attachment, Lambda and EC2 misconfigurations, and S3 bucket breaches. Each scenario will enhance your understanding of AWS vulnerabilities and teach you the techniques necessary to identify and exploit these weaknesses in real-world environments.

涵盖的内容

7个视频3个作业

位教师

Packt - Course Instructors
Packt
971 门课程231,340 名学生

提供方

Packt

从 Software Development 浏览更多内容

人们为什么选择 Coursera 来帮助自己实现职业发展

Felipe M.
自 2018开始学习的学生
''能够按照自己的速度和节奏学习课程是一次很棒的经历。只要符合自己的时间表和心情,我就可以学习。'
Jennifer J.
自 2020开始学习的学生
''我直接将从课程中学到的概念和技能应用到一个令人兴奋的新工作项目中。'
Larry W.
自 2021开始学习的学生
''如果我的大学不提供我需要的主题课程,Coursera 便是最好的去处之一。'
Chaitanya A.
''学习不仅仅是在工作中做的更好:它远不止于此。Coursera 让我无限制地学习。'
Coursera Plus

通过 Coursera Plus 开启新生涯

无限制访问 10,000+ 世界一流的课程、实践项目和就业就绪证书课程 - 所有这些都包含在您的订阅中

通过在线学位推动您的职业生涯

获取世界一流大学的学位 - 100% 在线

加入超过 3400 家选择 Coursera for Business 的全球公司

提升员工的技能,使其在数字经济中脱颖而出

常见问题