Skip to content

πŸ›‘οΈ My personal cloud security lab walkthroughs and writeups (PwnedLabs, CloudGoat, flaws.cloud, etc.)

Notifications You must be signed in to change notification settings

sparrowjumpy/cloud-sec-writeups

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

15 Commits
Β 
Β 
Β 
Β 

Repository files navigation

Cloud Security Writeups

Welcome to my personal repository of cloud security lab walkthroughs and writeups. This project is focused on practical, real-world challenges across a variety of platforms and services to help sharpen offensive cloud skills.

🧠 Labs Covered

  • PwnedLabs
    AWS-based misconfiguration labs covering enumeration, credential abuse, and privilege escalation.
  • CloudGoat (Coming Soon)
    Scenarios by Rhino Security Labs simulating vulnerable AWS environments.
  • flaws.cloud (Coming Soon)
    Challenges designed to teach the fundamentals of AWS misconfigurations.

πŸ“‚ Structure

cloud-sec-writeups/
β”œβ”€β”€ pwnedlabs/
β”‚   β”œβ”€β”€ account-id-enum/
β”‚   β”‚   β”œβ”€β”€ writeup.md
β”‚   β”‚   └── images/
β”‚   └── breach-in-the-cloud/
β”‚       β”œβ”€β”€ writeup.md
β”‚       └── images/
β”œβ”€β”€ README.md

πŸ› οΈ Tools & Techniques Used

  • nmap, aws cli, CloudTrail analysis
  • IAM misconfiguration abuse
  • S3 bucket enumeration & brute-forcing
  • AssumeRole attacks

πŸ§‘β€πŸ’» Author

sparrowjumpy β€” A passionate learner building a career in cloud security. Follow my journey on GitHub for more writeups and lab notes.

🚧 Disclaimer

All labs are used for educational purposes only in isolated, legal environments. Credentials, secrets, and access keys are redacted.


πŸ’‘ Star this repo to stay updated as new labs like CloudGoat and flaws.cloud are added.

About

πŸ›‘οΈ My personal cloud security lab walkthroughs and writeups (PwnedLabs, CloudGoat, flaws.cloud, etc.)

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published