AWS Lambda Redirector
ID: 35c4ff3e-2924-5558-b496-6e583781305d
STIX ID: report--35c4ff3e-2924-5558-b496-6e583781305d
Feed Name: XPN Infosec Blog
Threat Score
This post details how to deploy an AWS Lambda + API Gateway proxy using the Serverless framework and Go to relay Cobalt Strike HTTP beacon traffic to a team server. It covers serverless.yml configuration, the proxying logic (preserving headers, query parameters and bodies), necessary malleable profile URI changes to accommodate API Gateway stages, and testing tips (ngrok), demonstrating a practical technique to host/obfuscate C2 infrastructure in cloud services.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
