Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Introduction to AWS Pentesting
Rating: 3.9 out of 5(50 ratings)
272 students

Introduction to AWS Pentesting

AWS Pentesting
Last updated 4/2023
English
English

What you'll learn

  • Understand the fundamentals of AWS security and architecture
  • Identify vulnerabilities in AWS environments
  • Exploit vulnerabilities in AWS environments
  • Recommend mitigation strategies to secure AWS environments
  • Understand AWS pentesting methodology and tools
  • Perform automated AWS pentesting
  • Report and present AWS pentesting results

Course content

4 sections25 lectures8h 47m total length
  • Course Overview4:38

    Explore the basics of AWS pen testing, using the AWS CLI, scenario-based labs, and essential tools to identify vulnerabilities and strengthen AWS security.

  • AWS Pentesting Policy17:24

    Learn the AWS pentesting policy: obtain permission, test permitted services, avoid infringing AWS infrastructure, and responsibly use tools within authorized windows.

  • AWS Keys22:58

    Explore how AWS keys function as credentials for programmatic access, including access key, secret key, and security token for access. Learn where they are stored and how leaks occur.

  • IAM Security Issues20:42

    Explore identity and access management in AWS, focusing on users, roles, policies, and permissions. Highlight security concerns such as weak passwords, missing MFA, rotating keys, and over-permission with S3 access.

  • S323:56

    Explore how S3 buckets work, why misconfigurations create open buckets, and how leak hunters and pen testers detect leaks with dorking and enumeration.

  • EC215:57

    Launch cost-effective virtual servers in the Amazon cloud via the EC2 elastic compute cloud. Assess security concerns such as operating system flaws, SSH key risks, patch updates, and malicious AMIs.

  • Lambda12:47

    Explore how Lambda, a serverless compute service, runs code for web apps and data processing. Then learn to mitigate security issues such as injection, misconfigurations, and third-party library risks.

  • ARNs17:05

    Highlight how ARN (Amazon Resource Names) function as unique identifiers for AWS resources, exposing partition, service, region (optional), account id, resource type or id, and an optional path, with wildcards.

Requirements

  • It is recommended that learners have completed AWS foundational courses such as AWS Certified Cloud Practitioner or AWS Certified Solutions Architect - Associate before enrolling in the AWS Pentesting course. Additionally, learners should have a good understanding of Linux command-line tools and basic scripting skills.

Description

The AWS Pentesting course is designed to provide learners with the knowledge and skills required to conduct penetration testing on AWS (Amazon Web Services) cloud environments. The course covers various topics related to AWS security, including AWS architecture, identity and access management (IAM), network security, and data protection.

AWS Pentesting, or Amazon Web Services Penetration Testing, is a specialized cybersecurity course that focuses on identifying and exploiting vulnerabilities in AWS infrastructure.

In this course, you will learn the fundamentals of cloud computing and the unique security challenges associated with AWS environments. You will gain hands-on experience with various AWS services and tools, including EC2 instances, S3 buckets, IAM roles, and more.

The course will cover a range of advanced techniques for conducting vulnerability assessments and penetration testing, such as network scanning, web application testing, and privilege escalation. You will also learn how to identify common misconfigurations and weaknesses in AWS security controls, and how to exploit them to gain access to sensitive data and systems.

By the end of the course, you will have a solid understanding of AWS security best practices, and be equipped with the skills and knowledge to conduct effective pentesting engagements in AWS environments.

It is recommended that learners have completed AWS foundational courses such as AWS Certified Cloud Practitioner or AWS Certified Solutions Architect - Associate before enrolling in the AWS Pentesting course. Additionally, learners should have a good understanding of Linux command-line tools and basic scripting skills.

Who this course is for:

  • Penetration testers
  • Security analysts
  • Security engineers
  • Cloud architects
  • Security managers