CSCase Studies
Case Study: Cloud IAM Privilege Escalation to Tenant-Wide Access
A fictional cloud engagement where an over-permissioned role and a misconfigured trust policy chained to tenant-wide access, with AI triaging the IAM graph and a human confirming and containing each escalation.
Advanced5 min readprofessional streamUpdated Sat Aug 01 2026 00:00:00 GMT+0000 (Coordinated Universal Time)
Learning objectives
- Trace how an over-permissioned role and a weak trust policy chain to tenant-wide access
- See where AI triages a large IAM graph and where a human confirms and contains
- Distinguish read-only IAM enumeration from state-changing role assumption and policy edits
- Identify the least-privilege and trust-policy fixes that break the escalation chain
Academy subscription
Subscribe to unlock this module
This module is part of the StrikeOps Academy subscription. Unlock every paid module, with hands-on labs and knowledge checks.
- Every paid module across all tracks
- Hands-on labs and knowledge checks
- New content as it ships
$59/ month · or $590 / year
The Reference library and Foundation starters are free to read now.