Aws Labs
Explore 1 lab in Aws.
The EC2 Metadata Service (IMDS) lacks authentication, posing a risk of unauthorised access to sensitive services. Adversaries could extract valuable information, such as service tokens, from this endpoint, potentially gaining unauthorised access to other AWS services.
Enable token requirement for IMDS. See https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/instance#metadata-options
Select a language to explore available labs for this vulnerability.
Try adjusting your language filter.
Want to skill-up in secure coding and AppSec? Try SecDim Wargames to learn how to find, hack and fix security vulnerabilities inspired by real-world incidents.
Join our secure coding and AppSec community. A discussion board to share and discuss all aspects of secure programming, AppSec, DevSecOps, fuzzing, cloudsec, AIsec code review, and more.
Read more