Walkthrough of AWSGoat Modules
The first module features a serverless blog application utilizing AWS Lambda, S3, API Gateway, and DynamoDB. It consists of various web application vulnerabilities and facilitates exploitation of misconfigured AWS resources.
Escalation Path:
URL: https://j4nbgp3ssj.execute-api.us-east-1.amazonaws.com/prod/react
git clone https://github.com/....
cd AWSGoat/modules/module-2
terraform init
terraform apply --auto-approve
The second module features an internal HR Payroll application, utilizing the AWS ECS infrastructure. It consists of various web application vulnerabilities and facilitates exploitation of misconfigured AWS resources.
Escalation Path:
URL: aws-goat-m2-alb-262475468.us-east-1.elb.amazonaws.com:80/login.php