Skip to content

goodycy3/SANS-AWS-Detection

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Β 

History

2 Commits
Β 
Β 

Repository files navigation

SANS-AWS-Detection

🚨 Disclaimer

This lab write-up credits SANS for the Workshop on Building Detections in AWS. It replicates the workshop guide by the Cloud Security SANS Team. Following the instructions may result in an AWS billing of around $2, considering prompt resource deletion after completing the lab.

Lab Lifecycle

πŸ’¨ Research the attack technique β€” Lab 1
πŸ’¨ Set up proper logging β€” Lab 2
πŸ’¨ Attack realistic assets β€” Lab 3
πŸ’¨ Review log data β€” Lab 4
πŸ’¨ Build detection β€” Lab 5

Lab Exercise

Lab 1: Research the attack technique/ Infrastructure Deployment

Lab 2: Setting up API Event Logging

Lab 3: Attacking the Cloud Account

Lab 4: Detecting the Attack

Lab 5: Building an Automated Detection

Lab 6: Deleting Created Resources


πŸ•΅οΈβ€β™‚οΈ Complete READ-UP

Reference

πŸ‘‰ Website walkthrough: https://building-detections-aws.sanscloudwars.com/

πŸ‘‰ Video Walkthrough: https://www.youtube.com/watch?v=FZKZuNk49Dw

Shout-out to SANS Cloud Security Team for this amazing Workshop πŸš€πŸŽŒ

About

This lab write-up credits SANS for the Workshop on Building Detections in AWS. It replicates the workshop guide by the Cloud Security SANS Team

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors