Lateral movement

AWS Systems Manager Parameter Exposes AWS Secret

Platform(s)
Compliance Frameworks
  • CPRA
  • ,
  • iso_27001_2022
  • ,
  • iso_27002_2022
  • ,
  • Mitre ATT&CK
  • ,
  • NIST 800-53

Description

AWS Systems Manager Parameter Store provides a centralized store to manage your configuration data. It was detected that the Systems Manager Parameter Store {AwsSystemsManagerParameter} is exposing an AWS access key or secret key as plain text.