Rhino Security Labs

Strategic & Technical Blog

Attacking AWS Cognito with Pacu (p2)

David Kutz-Marks

In Part 2 of this post, we walk through our two new Cognito modules for Pacu, our open-source AWS exploitation framework. If you’re not familiar with accessing AWS Cognito, feel free to check out Part 1: Accessing AWS Cognito Security…

Attacking AWS Cognito with Pacu (p1)

IAMActionHunter: Query AWS IAM permission policies with ease

CVE-2022-25165:
Privilege Escalation to SYSTEM in AWS VPN Client

David Yesland

The AWS VPN Client application is affected by an arbitrary file write as SYSTEM, which can lead to privilege escalation and an information disclosure vulnerability that allows the user’s Net-NTLMv2 hash to be leaked via a UNC path in a…