Briefplatform change
Hundreds of leaked AWS keys give full control over corporate accounts
More than 9,300 Amazon Web Services (AWS) access keys publicly exposed between August 2022 and August 2026 are still active and valid. Truffle Security has been tracking this exposure for the past four years and says that 817 of the exposed keys were linked to companies, 526 of them being AWS root keys. According to the researchers, 242 of the keys are associated with Identity and Access Management (IAM) users with the AdministratorAccess policy [1].
techretailsciencecybersecurity
Sources
- bleepingcomputer.com · Hundreds of leaked AWS keys give full control over corporate accounts Aug 21, 2026
This is the neutral brief the press writes once, for everyone, before each reader’s paper adds its own so-what. It links out; it does not republish. 1 article clustered.