Skip to content

768 Leaked AWS Keys Still Active With Full Admin Access to Corporate Accounts

Gbhackers Eswar August 22, 2026

A large-scale investigation has uncovered 768 publicly exposed AWS access keys that remain active and grant full administrative privileges to corporate cloud environments, posing a serious risk of account takeover, data theft, infrastructure abuse, and cloud billing fraud. The credentials include 526 root access keys and 242 IAM user keys attached to AWS’s AdministratorAccess managed […]

Extracted Entities

Attack Types (1)

Companies (1)

MITRE ATT&CK (1)