All Topics
All Topics
Technology
Technology
Design
Design
Programming
Programming
Science
Science
News
News
Gaming
Gaming
Entertainment
Entertainment
Business
Business
Finance
Finance
Sports
Sports
Health
Health
Food
Food
Travel
Travel
Art
Art
Music
Music
Books
Books
Education
Education
Politics
Politics
Personal
Personal
No algorithm. No AI slop. No ads. Just RSS. Pro-human. Indie writers. Real journalism. Open web. Chronological. Hand toasted.

AWS Account Compromised During Outage: 600 Instances Spawned in 3 Hours

By

kinj28

7mo ago· 1 min readenNews

Summary

A user reports their AWS account was compromised with 600 instances spawned within 3 hours during an AWS outage, raising questions about potential connection between the two events. The compromise involved domain verification attempts and SES quota increase requests. The user is investigating potential vulnerabilities including API keys or console access without MFA.

Key quotes

· 4 pulled
Some 600 instances were spawned within 3 hours before AWS flagged it off and sent us a health event.
There were numerous domains verified and we could see SES quota increase request was made.
Our initial suspect list has 2 suspects: api key or console access where MFA wasn't enabled.
Could there be any link between the two events?
Snippet from the RSS feed
Could there be any link between the two events?

You might also wanna read