AWS Console Session Traceability: How Attackers Obfuscate Identity Through the AWS Console
wiz.io | blog | #cloud | #cloud-security | #aws | #identity | #cloudtrail | #threat-research | #session-traceability
Summary
Wiz researchers detail Console Conceal: a technique that abuses default AWS setups without SourceIdentity to obfuscate who performed console actions in CloudTrail, plus mitigations and investigation steps.
- Published
- Collected
Skip to content