Skip to content

Conversation

@kluo84
Copy link
Contributor

@kluo84 kluo84 commented Mar 26, 2025

You can remove this content before sending the PR:

Attribution

Attack scenarios that attacker gains access to a user/role in the victim account with "states:UpdateStateMachine" and "lambda:UpdateFunctionCode". He/she can perform the data exfiltration if the victim uses stepfunctions to send out sensitive info such as PII , credential etc.

In any case, thanks for contributing to HackTricks!

@kluo84 kluo84 changed the title Arte mr.kluo update state machine arte-mr.kluo-UpdateStateMachine Mar 26, 2025
@kluo84 kluo84 changed the title arte-mr.kluo-UpdateStateMachine arte-Kluo-UpdateStateMachine Mar 26, 2025
@kluo84 kluo84 changed the title arte-Kluo-UpdateStateMachine arte-Kluo Mar 26, 2025
@carlospolop carlospolop merged commit dbc2784 into HackTricks-wiki:master Mar 27, 2025
github-actions bot pushed a commit that referenced this pull request Aug 29, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants