Security & Incident Response Scenarios
Security & Incident Response Scenarios
AWS security scenarios covering leaked credentials, compromised instances, IAM hardening, and GuardDuty-led investigations.
Security & Incident Response
← All ScenariosScenario Labs
EC2 Instance Communicating with Malicious IP — Incident Response
Your VPC flow logs show an EC2 instance sending traffic to a known malicious IP address. Walk through containment, forensic investigation, eradication, and prevention.
Free
Start Scenario
Developer Pushed AWS Credentials to Public GitHub — Incident Response
A developer accidentally committed live AWS access keys to a public GitHub repository. Walk through the immediate containment, investigation, and prevention strategy.
Free
Start Scenario