GCP compute.instances.setMetadata
Replaces instance-level metadata on a Compute Engine VM.
Adversaries may modify the SSH <code>authorized_keys</code> file to maintain persistence on a victim host. Linux distributions, macOS, and ESXi hypervisors commonly use key-based authentication to secure the authentication process of SSH sessions for remote management. The <code>authorized_keys</...
View on MITRE ATT&CK →Replaces instance-level metadata on a Compute Engine VM.
Replaces project-wide Compute Engine metadata.
Creates an EC2 key pair and returns its private key to the API caller.
Registers an existing public key as an EC2 key pair.
Imports an SSH public key into an OS Login profile.
Updates an existing OS Login SSH public-key record; the method is not audit-logged.