Cloud Threat Landscape
  • Incidents
  • Actors
  • Techniques
  • Defenses
  • Tools
  • Targeted Technologies
  • Posters & Newspapers
  • About
  • RSS
  • STIX
  • Back to wiz.io
Cloud Threat Landscape

IAM privilege escalation

Tags
CloudAuthentication
ATT&CK Tactic
Privilege Escalation (TA0004)
ATT&CK Technique

T1098

Incidents
Cryptomining Campaign Exploiting Exposed Ray AI Infrastructure
Last edited
Sep 22, 2024 10:12 AM
Status
Stub
Defenses
User Account ControlIAM Policies

In AWS, unique combinations of privileges assigned to a principal can allow an attacker that has compromised the principal to escalate their privileges through a series of API calls.

Made with 💙 by Wiz

Last Updated: April 3, 2025