OpenAgentSkill Registry Manifest Skill: cloud-iam-deep Slug: elementalsouls-cloud-iam-deep Category: security Description: Cloud IAM red-team attack chain across AWS, Azure, GCP — focused on EXTERNAL exploitation paths and post-credential-discovery privilege analysis. Covers IAM enumeration (aws iam, az role, gcloud iam), STS/AssumeRole chaining, Azure Managed Identity abuse (via SSRF/leak), GCP service account JSON abuse, IMDSv1/v2 attacks via SSRF, K8s ServiceAccount token privilege analysis once held (token discovery / cluster exposure is owned by hunt-k8s), role-trust-policy confused-deputy, cross-account assume-role enumeration, IAM privilege escalation patterns (24+ AWS, 8+ Azure, 6+ GCP), and AWS Cognito Identity Pool unauthenticated-role attack chain (GetId → GetCredentialsForIdentity → IAM role abuse). Built for the case where recon yields a credential (key, JSON, token) and you need to know what it grants and how to escalate. Use when an AWS key / Azure secret / GCP service account JSON / K8s SA token surfaces from a code repo, JS bundle, APK, breach corpus, or SSRF chain. Agent fit: - Decision: 94/100 Production-ready - Primary fit: Research agents - Role: Primary pick Supply profile: - Track: Research and knowledge work - Scenario: Research agents - Applicable agents: Claude Code, CLI, Codex, Cursor - Maintenance: 6d since push - Risk: Risky Trust: - Trust score: 67/100 Manual review - Audit: 79/100 Risky Attribution: - Status: Registry indexed - Source: github candidate review - Creator: elementalsouls - Claim URL: https://www.openagentskill.com/skills/elementalsouls-cloud-iam-deep#claim-this-skill Install: npx skills add elementalsouls/Claude-BugHunter --skill cloud-iam-deep URLs: - Web: https://www.openagentskill.com/skills/elementalsouls-cloud-iam-deep - API: https://www.openagentskill.com/api/agent/skills/elementalsouls-cloud-iam-deep - Install API: https://www.openagentskill.com/api/skills/elementalsouls-cloud-iam-deep/install - Repository: https://github.com/elementalsouls/Claude-BugHunter/tree/main/skills/cloud-iam-deep