Finance company stores DB credentials in helpfully labeled spreadsheet
ID: 903c239c-60c5-50b0-9c08-ad1b68f43c15
STIX ID: report--903c239c-60c5-50b0-9c08-ad1b68f43c15
Feed Name: The Register (Security)
Threat Score
A fintech firm kept root DB credentials and master AWS IAM keys in a password-protected Excel spreadsheet named 'Prod_DB_Root_Creds_DO_NOT_SHARE.xlsx' on a company-wide SharePoint folder accessible to all employees and contractors; the password was trivial to guess and the file persisted for ~8 months, creating a high-risk exposure of highly privileged secrets.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
