Files
hacktricks-cloud/src/pentesting-cloud/gcp-security/gcp-services/gcp-batch-enum.md
Carlos Polop 4ef00e6b1b translate fix
2025-01-01 23:55:17 +01:00

1.3 KiB

GCP - Batch Enum

{{#include ../../../banners/hacktricks-training.md}}

Basic Information

Google Cloud Platform (GCP) Batch Service is designed for running large-scale batch computing workloads, automating the management, scheduling, and execution of batch jobs across scalable cloud resources. This service simplifies operations and optimizes costs by allowing users to leverage preemptible VMs and integrates seamlessly with other GCP services for comprehensive batch processing workflows. It's ideal for data processing, financial modeling, and scientific simulations.

Service Account

Although (currently) it's not possible to select the SA that the batch job will be executed with, it'll use the compute SA (Editor permissions usually).

Enumeration

# List jobs
gcloud batch jobs list

# Get job info
gcloud batch jobs describe <job-name> --location <location>

# List tasks
gcloud batch tasks list --location <location> --job <job-name>

# Gte info of tasks executions
gcloud batch tasks describe projects/<proj-number>/locations/<location>/jobs/<job-name>/taskGroups/<group>/tasks/<num>

Privilege Escalation

{{#ref}} ../gcp-privilege-escalation/gcp-batch-privesc.md {{#endref}}

{{#include ../../../banners/hacktricks-training.md}}