What an AWS penetration test covers depends on your environment and goals. Tanner can review the following areas based on what you need.
Identity and Access Management: AWS Identity and Access Management (IAM) is key to cloud security. Tanner reviews users, roles, policies, permissions, trust relationships, authentication controls, and other identity settings to find ways attackers could get unauthorized access or extra privileges. Testing can uncover problems like too many permissions, misconfigured roles, weak authentication, exposed access keys, and other issues that could let attackers gain more access than intended.
AWS Network Security: We review the network controls that protect AWS resources from unauthorized access. Depending on the scope, testing may include VPC settings, security groups, network access controls, routing, exposed services, and how resources are separated. The goal is to find out if an attacker could reach systems or services they should not be able to access from their starting point.
Cloud Storage and Data Exposure: AWS storage services often contain a company’s most sensitive data. Testing checks access rights and exposure for services like Amazon S3 and other cloud storage. Tanner looks for cases where unauthorized users or compromised accounts could access sensitive information.
AWS Workloads: AWS environments may include EC2 instances, containers, serverless applications, databases, and other workloads. If these systems are included, Tanner checks them for vulnerabilities and weak configurations that could let an attacker gain access or move deeper into your environment.
APIs and Cloud Applications: Modern AWS setups often use APIs and applications to connect cloud services, databases, identity systems, and external users. Testing reviews authentication, authorization, access controls, input handling, exposed features, and other application-level weaknesses that could let attackers access more resources or data than they should.
Credentials and Secrets: If credentials, access keys, tokens, or other authentication details are exposed, attackers could use them to access your cloud environment directly. Tanner checks the agreed areas for ways attackers might obtain or misuse credentials and assesses whether those credentials could grant broader access.
Logging and Security Monitoring: Depending on your needs, Tanner can check if your security logging and monitoring provide enough visibility into possible attacks. Good logging helps you detect suspicious activity and investigate incidents. Testing can find gaps that might allow attackers to go unnoticed.