Beginner Friendly red team icon   azure

Leverage LFI for RCE and OCI Access

A local file inclusion bug is rarely the end of the story. Turn LFI into remote code execution, then abuse Oracle Cloud Infrastructure IAM and Vault to expand your access.

Overview

A local file inclusion bug is rarely the end of the story. In this lab you will turn LFI into remote code execution, then abuse Oracle Cloud Infrastructure IAM and Vault to expand your access.

Scenario

You are on a red team engagement against Mega Big Tech, whose workloads run on Oracle Cloud Infrastructure. A public web application is in scope. Show how a single file inclusion flaw can lead to cloud compromise.

Lab prerequisites
  • Familiarity with the Linux command line
  • Familiarity with web application attacks
Learning outcomes
  • Exploit local file inclusion and directory traversal
  • Escalate LFI to remote code execution
  • Abuse a cron job for code execution
  • Enumerate OCI with oci-hunter
  • Extract secrets from OCI Vault
  • Access OCI Object Storage
  • Abuse OCI IAM to expand access
Real-world context

Oracle Cloud Infrastructure is less familiar to many attackers and defenders than AWS or Azure, which makes its IAM and Vault services a blind spot. Web application flaws remain a common entry point into cloud estates.

platform mock(1)

Cloud Security Training To Protect Your Business

Pwned Labs for Business gives your team access to dedicated business content, including labs and cyber ranges.

We also offer in-person or remote workshops, and our cloud penetration services are helping businesses become more secure!