Summary
Anyone can set up an AWS account under their Free Tier to try out some general AWS pentesting tools.
AWS has its own applications that will be useful to you as a pentester. They include AWS CloudShell, AWS Security Hub, and Amazon Inspector.
AWS CloudShell gives you a CLI you can use from your web browser once you’ve logged in to your AWS account. Alternatively, you can use the AWS CLI application, which you can install directly on your Windows, Mac, or Linux PC.
AWS Security Hub is a handy unified application for checking all of your AWS security settings, configurations, and reports.
Amazon Inspector is AWS’s native vulnerability scanning application. I would recommend using it in addition to the other vulnerability scanners and pentesting applications I demonstrate in this book.
A wide range of vulnerability scans and pentests can be executed with Prowler, Cred Scanner, CloudFrunt, and Pacu. These tools help you find security problems such as...