RnD Research Lab

Cyber Security => IT News => Topic started by: ixsky on

Title: Alert: Threat Actors Can Leverage AWS STS to Infiltrate Cloud Accounts
Post by: ixsky on
Alert: Threat Actors Can Leverage AWS STS to Infiltrate Cloud Accounts

Threat actors can take advantage of Amazon Web Services Security Token Service (AWS STS) as a way to infiltrate cloud accounts and conduct follow-on attacks.
The service enables threat actors to impersonate user identities and roles in cloud environments, Red Canary researchers Thomas Gardner and Cody Betsworth said in a Tuesday analysis.
AWS STS is a web service that enables

Source: Alert: Threat Actors Can Leverage AWS STS to Infiltrate Cloud Accounts (https://thehackernews.com/2023/12/alert-threat-actors-can-leverage-aws.html)