GCP - Secretmanager Post Exploitation

Support HackTricks

Secretmanager

For more information about Secret Manager check:

GCP - Secrets Manager Enum

secretmanager.versions.access

This give you access to read the secrets from the secret manager and maybe this could help to escalate privielegs (depending on which information is sotred inside the secret):

# Get clear-text of version 1 of secret: "<secret name>"
gcloud secrets versions access 1 --secret="<secret_name>"
Support HackTricks

Last updated