Hi all!!!

Is anyone still here?

Does anyone know of any AWS and AZURE pentesting #trainings? Especially #AWS_Pentest, help me, please!!!!

@linxack HTB have a whole course on it AFAIK...
@r3pek Really!? Nice!!!!!
@linxack I know it's "cloud". Not so sure about aws...might be azure. But I think its aws.
@r3pek I'll take a look thanks!
@linxack you can also check out trainings from @Antisy_Training - we have used their SOC core training skills for new team members with really good success. They have a specific course called breaching the cloud: https://www.antisyphontraining.com/breaching-the-cloud-w-beau-bullock/
Breaching the Cloud w/ Beau Bullock - Antisyphon

Antisyphon
@Itsecdan @linxack
hey! Thanks so much for the shoutout! The next run of "Breaching the Cloud" starts next week! https://cvent.me/BWvnVm

@linxack stage2sec provides a training that covers AWS, Azure, and GCP. I've taken it and found it to be pretty good.

https://s2.security/training/astute-cloud-red-team/

Astute Cloud Red Team - Stage 2 Security

Stay frosty within AWS, Azure, & GCP environments with this fast-paced and hands-on course which teaches each participant the Tactics, Techniques, and Procedures (TTPs) needed to infiltrate and expand access within cloud platforms.

Stage 2 Security
@Itakenaps thank you so much!!! 😁
@Itakenaps by any chance do you know the cost? 🤔
@linxack sorry I don't remember. If you search black hats site clyou might find it
@linxack I’ve heard good things about the Hack The Box labs (I think it’s called Hailstorm). For less hands on learning you can always check out https://hackingthe.cloud. It’s an encyclopedia of offensive security techniques you can use in cloud environments.
Hacking The Cloud

The encyclopedia for offensive security in the cloud

@frichetten Excellent recommendations. I didn't know the encyclopedia at all!!! Thanks!!!
@linxack this is a great, free place to start: http://flaws2.cloud/
flAWS2.cloud

AWS Security training

@linxack Anything specific you are looking to learn?
@crashd the methodology and hands on... Something practical, not just theoretical
@linxack so hands on cloud pentesting focused on aws. Any specific service mix in mind?

@crashd something similar to this https://www.antisyphontraining.com/breaching-the-cloud-w-beau-bullock/

From recognition to as deep as you can go

Breaching the Cloud w/ Beau Bullock - Antisyphon

Antisyphon
@linxack Verica has started on putting together a training on prowler. https://www.verica.io/blog/prowler-training-now-available/
Not exactly what you are looking for, but maybe good supplemental material
Prowler Training Now Available

Today we’re releasing a Prowler Training Course to help people start using Prowler and get up to speed quickly. The course is free, and consists of a series of short, actionable videos where I walk you through the basics of Prowler, how to run it and what some sample outputs look like, and then how to write your own custom checks and some advanced features like sending your results directly to Security Hub.

Verica
@linxack I have a bunch of Cloud training listed here https://shellsharks.com/online-training#cloud.
Online IT/Security Training

A list of online IT and infosec training resources.

shellsharks
@shellsharks wow! What an amazing list!!!
GitHub - ine-labs/AWSGoat: AWSGoat : A Damn Vulnerable AWS Infrastructure

AWSGoat : A Damn Vulnerable AWS Infrastructure. Contribute to ine-labs/AWSGoat development by creating an account on GitHub.

GitHub
@mabiola ohhhh really cool!!!!!!! 🥰
Breaching The Cloud Perimeter w/ Beau Bullock

Black Hills Information Security