logo

AWS Security makes an inscrutable choice

ID: 9db9a87b-228b-5a75-a3b7-0609df05e588

STIX ID: report--9db9a87b-228b-5a75-a3b7-0609df05e588

Feed Name: The Register (Security)

Threat Score
80/100

Date Published: 2026-08-21

Date Updated: 2026-08-22

...
...

The article describes findings that hundreds of leaked AWS keys (including root keys) remain active and criticizes AWS’s Quarantine Policy as inadequate: while the policy attempts to avoid breaking customer environments by selectively denying some actions, many powerful actions remain possible for an attacker (role assumption, EC2 command execution, secret access, S3 object lock/retention, backup deletions), enabling severe data loss, service disruption, and fraud.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.