What problem does it solve?
This Skill eliminates the manual effort of identifying and exploiting cloud IAM misconfigurations, exposed serverless functions, and public storage resources across GCP, AWS, and Azure after initial credential or endpoint discovery during authorized penetration tests.
Core Features & Use Cases
- Multi-Cloud IAM Exploitation: Enumerate IAM policies, escalate service account privileges, and generate valid GCP access tokens from leaked SA keys.
- Serverless & Storage Resource Testing: Test for unauthenticated access to Cloud Functions, Cloud Run, S3 buckets, MinIO instances, Azure Blob Storage, and Firebase/Firestore projects, with validated real-world exploitation paths from 25+ field tests.
- Artifact & Source Code Analysis: Download and inspect container images from Artifact Registry and source code buckets for embedded secrets.
Quick Start
Use the cloud-iam-deep skill to test for unauthenticated access and enumerate all accessible resources in a target GCP project after obtaining a valid service account key.