Skip to content
← LibraryTechnique entry
C-AWS-ACCT-ENUMReconnaissance

AWS Account ID Enumeration

Match a public ARN, S3 bucket, or KMS key alias back to its 12-digit account ID — required for cross-account role assumption.

§ Where this technique fits

C-AWS-ACCT-ENUM is catalogued under the Reconnaissance tactic of the offensive-security kill-chain. It appears in 1 approved dossier in the registry, typically at step 1 on average.

§ Dossiers chaining this technique

§ What commonly comes next

  1. 01
    Cloud OIDC Trust Misconfiguration
    C-OIDC-TRUST-MISCONF · Initial Access
    seen 1×