Suspicious activity

Anomaly detection: Role assumed from another account with an unusual user agent

Platform(s)

Description

Unlike in the past, the role was assumed by an identity from external cloud account with an unusual user agent. Those findings might indicate on a malicious usage of the role permissions.
  • Recommended Mitigation

    It is recommended to review the relevant CloudTrail events and principals that issued this API calls.