Terminology Index

Glossary

1801 terms

Open concept maps

Showing 801-832 of 1801 terms

H
3
I
29

IAM Privilege Escalation

Abusing cloud IAM misconfigurations to gain more permissions than originally granted, for example using a permission to modify policies or assume a more powerful role, a major focus of cloud security assessment.

In the cloud, certain permissions can be chained to escalate privilege: an identity allowed to edit IAM policies, create access keys, assume roles, or modify functions can leverage that to grant itself broader access or become an admin. IAM privilege escalation is the study and detection of these paths, and assessments specifically hunt for them because a single over-permissive grant can let an attacker pivot to full control of an environment.

Introduced in: Cloud Security Assessment

Examples

  • Using a policy-editing permission to grant oneself admin rights.
  • Assuming a more powerful role through a misconfigured trust.
  • Chaining a key-creation permission to escalate access.

No related terms linked yet.