

Leaking your AWS API keys, on purpose? [Research Saturday]
Apr 6, 2024
Noah Pack, a SANS Intern, discusses leaking AWS API keys intentionally for research. He shares insights on responses from different automated processes and security services. The aftermath of publicly revealing AWS API keys and the alerts triggered by GitGuardian, AWS, and suspicious IP addresses are highlighted. Implications of accidental leaks and risk mitigation strategies are explored, emphasizing the need for immediate action and key rotation.
Chapters
Transcript
Episode notes
1 2 3 4 5
Introduction
00:00 • 2min
Lessons in Security and Canary Tokens
01:51 • 10min
Enhancing Cybersecurity and Combatting Cybercrime with SpyCloud
11:32 • 2min
Securing AWS API Keys: Lessons Learned
13:28 • 9min
Implications of Accidental AWS API Keys Leak and Risk Mitigation Strategies
21:59 • 2min