Tokens that match the format for AWS secret keys were found in the logs of the affected API.
Finding AWS secrets in logs indicates that the logs from the affected API contain tokens that match the format of AWS secret keys. These keys, if exposed, can be used to gain unauthorized access to AWS resources, posing a significant security risk.
Remediation
AWS secret keys should not be transmitted over the network. Review the logs in question and verify that the transmission of secrets is happening in accordance with your security policies.
Example Attack Scenario
How to Identify with Example Scenario
How to Resolve with Example Scenario
How to Identify with Example Scenario
Find the text in bold to identify issues such as these in API specifications
How to Resolve with Example Scenario
Modify the text in bold to resolve issues such as these in API specifications