Amazon Inspector Sandbox

Use this sandbox to explore the Amazon Inspector service. There is no particular scenario or end goal, but we recommend clicking around the service to see what features it offers, and then updating the pre-created Lambda function to see how Inspector detects vulnerable code issues. You will need to enable Inspector in the account, then, in the Inspector Dashboard, go to “Account Management” -> “Activate” -> Check “AWS Lambda Standard scanning + AWS Lambda Code scanning” -> “Submit” for Inspector to scan the function’s code and not just dependencies. Then, go to the Lambda dashboard and edit the existing Lambda function code. You can try adding various types of vulnerabilities to this function, but a great starting point is to hardcode fake access keys. Note: The function has no access to any other AWS service by design.

Members can find this lab in the Introduction to AWS Security course 

What's a Hands-On Lab?

Sandboxes are Hands-On Labs just like our other labs, but they don’t have a specific scenario in mind. They give you the opportunity to practice using an AWS service free of charge and without any cleanup.

