Skip to main content

aws-identity-trust-collector

Deep AWS IAM, identity, and trust-relationship collector that goes further than a user-centric access-key report so future runs automatically surface privilege escalation and cross-account pivots. Collects per account IAM users, roles, groups with attached and inline policy documents, access keys (age, last-used, active, multi-key), MFA devices and console login profiles, role trust policies as JSON, permission boundaries, account password policy, root access-key and root-usage posture, and the Organizations tree with SCPs, then computes has_credential, can_assume, can_passrole, trusts, and can_escalate edges into an aws_attack_model/v1 graph. Use when building the identity layer of an AWS attack graph, hunting IAM privilege-escalation and PassRole paths, mapping cross-account and confused-deputy trust, auditing stale or MFA-less credentials, or enriching a red-team attack-chain model with identity and trust primitives.

الانتقال إلى التثبيت

معلومات المصدر

المستودع
transilienceai/transilience-mdr-rainer
آخر نشاط في المصدر
٩ أغسطس ٢٠٢٦ في ٢١:١٥
لغة SKILL.md المكتشفة
الإنجليزية
النجوم
٢
التفرعات
٠

خيارات التثبيت

يُحدَّد Prompt الذي يراجع المصدر أولًا بشكل افتراضي. يمكنك التبديل إلى أمر مباشر أو تنزيل نسخة محلية.

مراجعة ملفات المصدر

اقرأ SKILL.md وأي ملفات مرافقة يعرضها SkillsMP قبل أن تقرر التثبيت.