AWS - Lightsail Enum

Support HackTricks

AWS - Lightsail

Amazon Lightsail inatoa njia rahisi, nyepesi kwa watumiaji wapya wa wingu kutumia huduma za kompyuta za wingu za AWS. Inakuruhusu kupeleka huduma za wavuti za kawaida na maalum kwa sekunde kupitia VMs (EC2) na containers. Ni EC2 + Route53 + ECS ya kima cha chini.

Enumeration

# Instances
aws lightsail get-instances #Get all
aws lightsail get-instance-port-states --instance-name <instance_name> #Get open ports

# Databases
aws lightsail get-relational-databases
aws lightsail get-relational-database-snapshots
aws lightsail get-relational-database-parameters

# Disk & snapshots
aws lightsail get-instance-snapshots
aws lightsail get-disk-snapshots
aws lightsail get-disks

# More
aws lightsail get-load-balancers
aws lightsail get-static-ips
aws lightsail get-key-pairs

Analyse Snapshots

Inawezekana kuzalisha instance na relational database snapshots kutoka lightsail. Kwa hivyo unaweza kuangalia hizo kwa njia ile ile unavyoweza kuangalia EC2 snapshots na RDS snapshots.

Metadata

Metadata endpoint inapatikana kutoka lightsail, lakini mashine zinaendeshwa katika akaunti ya AWS inayosimamiwa na AWS kwa hivyo huna udhibiti wa ruhusa zinazotolewa. Hata hivyo, ukipata njia ya kuzitumia, utakuwa unatumia moja kwa moja AWS.

Privesc

AWS - Lightsail Privesc

Post Exploitation

AWS - Lightsail Post Exploitation

Persistence

AWS - Lightsail Persistence
Support HackTricks

Last updated