Low risk Elevated risk High risk / attack path Data core
⚠ Couldn't load the 3D engineThree.js failed to load from the CDN. Check your connection and reload.

Cloud IAM Least-Privilege Risk Simulator

Every AWS, Azure or GCP account is a graph of IAM identities, storage and compute resources sitting around a core of sensitive data — and its real attack surface is driven far more by IAM over-privilege and misconfiguration than by any single exploit. This simulator arranges 24 resources in two rings around a central data core and scores the account the way a Cloud Security Posture Management (CSPM) tool does: exposure × privilege excess × misconfiguration × (1 − encryption benefit) × segmentation, averaged and normalized into a 0–100 attack-surface score, then passed through a logistic curve to get a breach probability. Widen the IAM privilege ratio toward a wildcard policy, raise the misconfiguration rate, or flip Zero Trust segmentation on and off to see exactly which lever moves the needle — and watch live attack paths light up from exposed, over-privileged resources straight to the data core.