AWS AssumeRole
Returns temporary security credentials for assuming an IAM role. Allows an entity (user, service, or account) to act with the role's permissions.
Valid accounts in cloud environments may allow adversaries to perform actions to achieve Initial Access, Persistence, Privilege Escalation, or Defense Evasion. Cloud accounts are those created and configured by an organization for use by users, remote support, services, or for administration of r...
View on MITRE ATT&CK →Returns temporary security credentials for assuming an IAM role. Allows an entity (user, service, or account) to act with the role's permissions.
Exchanges a validated SAML assertion for temporary IAM role credentials.
Exchanges a web-identity token for temporary IAM role credentials.
Records a sign-in attempt to the AWS Management Console, capturing success or failure status and whether MFA was used.
Requests a temporary authentication token for private Amazon ECR registries.
Issues temporary federated-user credentials using long-term IAM-user credentials.
Issues temporary credentials for an IAM user, optionally with MFA context.