CYBERSECURITYTRACKER
TRACKING4,455 stories841 vuln stories
Permanent story citation

Hundreds of leaked AWS keys give full control over corporate accounts

The story is preserved as cited. Later corrections remain visibly typed and adjacent to the original snapshot.

← newsStory 4847

As cited

Citation snapshot as of .

cloud saas

Hundreds of leaked AWS keys give full control over corporate accounts

Over 9,300 AWS access keys leaked between August 2022 and August 2026 remain active and valid, exposing corporate accounts to unauthorized access. The ongoing exposure of these credentials provides attackers with persistent entry points into affected organizations. Organizations using these keys remain at risk until they rotate and revoke the compromised credentials.

Why it matters: Any organization using AWS is at risk if their keys were among those exposed; practitioners should audit their AWS credential inventory and rotate any keys that may have been compromised or made public.

Source published
First seen by Cybersecurity Tracker

Source attribution