Enumeration of Privileges Without Being Logged to CloudTrail
Published Sat, Oct 17th, 2020
Platforms
Summary
An attacker who gained access to IAM credentials could enumerate a subset of the privileges they had access to without logging to CloudTrail. This would allow them to perform the typically noisy permission enumeration process undetected.