Digital Ocean Pentesting

Support HackTricks

Basic Information

Before start pentesting a Digital Ocean environment there are a few basics things you need to know about how DO works to help you understand what you need to do, how to find misconfigurations and how to exploit them.

Concepts such as hierarchy, access and other basic concepts are explained in:

DO - Basic Information

Basic Enumeration

SSRF

Projects

To get a list of the projects and resources running on each of them from the CLI check:

DO - Projects

Whoami

doctl account get

Services Enumeration

DO - Services
Support HackTricks

Last updated