Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
News When Identity is the Attack Path
The Hacker News
2 months ago

When Identity is the Attack Path

By info@thehackernews.com (The Hacker News)

Consider a cached access key on a single Windows machine. It got there the way most cached credentials do - a user logged in, and the key stored itself automatically. Standard AWS behavior. No one misconfigured anything or violated a policy. Yet that single key, which was easily accessible to a minor-league attacker, could have opened a path to some 98% of entities in the company's cloud

More from The Hacker News

Leaving Threaticon

This link opens an external site that isn't part of the platform.