Skip to main content

AWS Penetration Testing

Provides techniques for penetration testing AWS environments, covering IAM enumeration, privilege escalation, and security audits.

Install this skill

or
73/100

Security score

The AWS Penetration Testing skill was audited on Feb 21, 2026 and we found 13 security issues across 2 threat categories, including 1 high-severity. Review the findings below before installing.

Categories Tested

Security Issues

high line 345

Curl to non-GitHub URL

SourceSKILL.md
345| Get metadata | `curl http://169.254.169.254/latest/meta-data/` |
low line 96

External URL reference

SourceSKILL.md
96http://169.254.169.254/latest/meta-data/
low line 99

External URL reference

SourceSKILL.md
99http://169.254.169.254/latest/meta-data/iam/security-credentials/
low line 102

External URL reference

SourceSKILL.md
102http://169.254.169.254/latest/meta-data/iam/security-credentials/ROLE-NAME
low line 118

External URL reference

SourceSKILL.md
118"http://169.254.169.254/latest/api/token")
low line 122

External URL reference

SourceSKILL.md
122"http://169.254.169.254/latest/meta-data/iam/security-credentials/"
low line 133

External URL reference

SourceSKILL.md
133http://169.254.170.2/v2/credentials/CREDENTIAL-PATH
low line 208

External URL reference

SourceSKILL.md
208https://{bucket-name}.s3.amazonaws.com
low line 209

External URL reference

SourceSKILL.md
209https://s3.amazonaws.com/{bucket-name}
low line 228

External URL reference

SourceSKILL.md
228https://buckets.grayhatwarfare.com/
low line 345

External URL reference

SourceSKILL.md
345| Get metadata | `curl http://169.254.169.254/latest/meta-data/` |
low line 374

External URL reference

SourceSKILL.md
374https://app.com/proxy?url=http://169.254.169.254/latest/meta-data/iam/security-credentials/
low line 378

External URL reference

SourceSKILL.md
378https://app.com/proxy?url=http://169.254.169.254/latest/meta-data/iam/security-credentials/AdminRole
Scanned on Feb 21, 2026
View Security Dashboard
Installation guide →