Cloud Penetration Testing

Automate cloud security assessments across Azure, AWS, and GCP.

Updated Apr 6, 2026
One-click install
npx skills add https://github.com/gerald-ica/dev-tool-configs --skill cloud-penetration-testing-gerald-ica
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: Cloud Penetration Testing
Source: https://github.com/gerald-ica/dev-tool-configs/tree/main/gemini/skills/cloud-penetration-testing
Command: npx skills add https://github.com/gerald-ica/dev-tool-configs --skill cloud-penetration-testing-gerald-ica

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill requires Az, MSOnline, AzureAD, awscli, gcloud, scoutsuite, pacu, and includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill addresses the need for thorough security assessment of cloud infrastructure, providing techniques for reconnaissance, authentication testing, resource enumeration, and exploitation across major cloud platforms.

Core Features & Use Cases

  • Cloud Security Assessment: Covers reconnaissance, authentication, enumeration, exploitation, and persistence techniques.
  • Major Platforms: Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP).
  • Use Case: For security professionals conducting authorized cloud security engagements, this Skill helps in identifying misconfigurations, vulnerabilities, and potential breaches.

Quick Start

Run the 'cloud-penetration-testing' skill to initiate a comprehensive security assessment of your cloud infrastructure.

Frequently Asked Questions about Cloud Penetration Testing

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate cloud security assessment across AWS, Azure, and GCP?

Cloud security assessment across AWS, Azure, and GCP is automated by running this Skill to conduct reconnaissance, authentication testing, resource enumeration, exploitation, and persistence. It leverages provider CLI tools and Python libraries for analysis.

Do I need to install specific CLI tools to perform cloud penetration testing?

Yes, cloud penetration testing requires installing specific dependencies: Az, MSOnline, AzureAD, awscli, and gcloud. These provider CLI tools and Python libraries are necessary for automating security assessment techniques and analysis.

What is the best way to find misconfigurations and vulnerabilities in cloud infrastructure?

The best way to find misconfigurations in cloud infrastructure is conducting a comprehensive security assessment. This identifies vulnerabilities and potential breaches by automating reconnaissance, enumeration, exploitation, and persistence techniques across major cloud platforms.

Can I use Pacu and ScoutSuite for AWS and Azure security assessments?

Yes, you can use Pacu and ScoutSuite for AWS and Azure security assessments. This Skill integrates these dependencies alongside native provider CLIs to automate exploitation, reconnaissance, and resource enumeration during authorized cloud security engagements.

How does enumeration and exploitation testing work for cloud platforms?

Enumeration and exploitation testing for cloud platforms works by automating authentication and resource discovery techniques. This Skill systematically probes Azure, AWS, and GCP environments to identify misconfigurations, vulnerabilities, and establish persistence.