In this chapter, we learned how to set up and configure Scout Suite. To run Scout Suite on our AWS infrastructure, we created a new VPC and subnet with vulnerable configurations, and then launched an EC2 instance with a vulnerable security group. We then ran Scout Suite to identify potentially vulnerable configurations in our AWS infrastructure, and then analysed the report to understand how vulnerabilities are reported. Finally, we learned how to modify and use customized rulesets to tune the reports in accordance to our needs.
In the next chapter, we will look at the real-world penetration testing of the AWS infrastructure.