AWS - Directory Services Privesc
Tip
Jifunze na ufanye mazoezi ya AWS Hacking:
HackTricks Training AWS Red Team Expert (ARTE)
Jifunze na ufanye mazoezi ya GCP Hacking:HackTricks Training GCP Red Team Expert (GRTE)
Jifunze na ufanye mazoezi ya Az Hacking:HackTricks Training Azure Red Team Expert (AzRTE)
Saidia HackTricks
- Angalia the subscription plans!
- Jiunge na 💬 Discord group au the telegram group au utufuate kwenye Twitter 🐦 @hacktricks_live.
- Shiriki hacking tricks kwa kutuma PRs kwa HackTricks and HackTricks Cloud github repos.
Directory Services
Kwa maelezo zaidi kuhusu Directory Services angalia:
AWS - Directory Services / WorkDocs Enum
ds:ResetUserPassword
Ruhusa hii inaruhusu kubadilisha nenosiri la mtumiaji yoyote aliyewepo katika Active Directory.
Kwa chaguo-msingi, mtumiaji pekee aliyewepo ni Admin.
aws ds reset-user-password --directory-id <id> --user-name Admin --new-password Newpassword123.
AWS Management Console
Inawezekana kuwezesha application access URL ambayo watumiaji kutoka AD wanaweza kuitumia kuingia:
.png)
Kisha watapewa AWS IAM role wanapoingia, kwa hivyo mtumiaji au kikundi wa AD atakuwa na ufikiaji wa AWS Management Console:
.png)
Inaonekana hakuna njia ya kuwezesha application access URL, AWS Management Console na kutoa ruhusa
Tip
Jifunze na ufanye mazoezi ya AWS Hacking:
HackTricks Training AWS Red Team Expert (ARTE)
Jifunze na ufanye mazoezi ya GCP Hacking:HackTricks Training GCP Red Team Expert (GRTE)
Jifunze na ufanye mazoezi ya Az Hacking:HackTricks Training Azure Red Team Expert (AzRTE)
Saidia HackTricks
- Angalia the subscription plans!
- Jiunge na 💬 Discord group au the telegram group au utufuate kwenye Twitter 🐦 @hacktricks_live.
- Shiriki hacking tricks kwa kutuma PRs kwa HackTricks and HackTricks Cloud github repos.
HackTricks Cloud

