logo

CISA Admin Leaked AWS GovCloud Keys on Github

ID: 427ed2d6-b28e-594f-b5a4-c1bffc495170

STIX ID: report--427ed2d6-b28e-594f-b5a4-c1bffc495170

Feed Name: Security Boulevard

Threat Score
80/100

Date Published: 2026-05-18

Date Updated: 2026-05-18

Author: BrianKrebs

...
...

**CISA contractor leaked highly privileged AWS GovCloud keys and numerous plaintext credentials on a public GitHub repository, exposing internal CISA systems (including artifactory and DevSecOps environments); the keys reportedly remained valid for ~48 hours and present a serious risk of lateral movement, persistence, and supply-chain compromise while CISA investigates.**

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.