PayloadsAllTheThings/FIX_AWS Amazon Lambda
2019-03-07 00:07:14 +01:00
..
Images Fix name - Part 1 2019-03-07 00:07:14 +01:00
README.md Fix name - Part 1 2019-03-07 00:07:14 +01:00

Vulnerability Title

Vulnerability description - reference

Tools:

Summary

Something

Quick explanation

Exploit

Abhay Bhargav https://twitter.com/abhaybhargav/status/1080034019230842880

@abhaybhargav 1 janv. Protip: When bughunting a #AWS #Lambda function, remember that the metadata objects are env-vars. Escalate privs after RCE with envvars. In this screenshot have a function that's vulnerable to a deserialization vuln (RCE) through which I have dumped the envvars with secrets

References