Station Brief
Briefplatform changeAug 21, 2026

Hundreds of leaked AWS keys give full control over corporate accounts

More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. Truffle Security has been tracking this exposure for the past four years and says that 817 of the exposed keys were linked to companies, 526 of them being AWS root keys. According to the researchers, 242 of the keys are associated with Identity and Access Management (IAM) users with the AdministratorAccess policy [1].

techretailsciencecybersecurity

Sources

  1. bleepingcomputer.com · Hundreds of leaked AWS keys give full control over corporate accounts Aug 21, 2026

This is the neutral brief the press writes once, for everyone, before each reader’s paper adds its own so-what. It links out; it does not republish. 1 article clustered.

Print your own paper