Ask HN: Our AWS account got compromised after their outage

  • Thread starter kinj28
  • Start date
  • Replies 0
  • Views 1
Status
Not open for further replies.
K

kinj28

Guest
Could there be any link between the two events?
Here is what happened:
Some 600 instances were spawned within 3 hours before AWS flagged it off and sent us a health event. There were numerous domains verified and we could see SES quota increase request was made.
We are still investigating the vulnerability at our end. our initial suspect list has 2 suspects. api key or console access where MFA wasn’t enabled.



Comments URL: https://news.ycombinator.com/item?id=45657345

Points: 75

# Comments: 17
 
Status
Not open for further replies.
Top