Threat Actors Leverage Bitbucket Artifacts to Breach AWS Accounts

In a recent investigation into Amazon Web Services (AWS) security breaches, Mandiant uncovered a troubling scenario client-specific secrets were leaked from Atlassian’s code repository tool, Bitbucket, and exploited by threat actors to gain unauthorized access to AWS accounts. This revelation highlights the potential vulnerabilities in Bitbucket’s Secured Variables, which can be leaked in CI/CD pipelines, exposing organizations to significant security risks.

Source: GBHackers

 


Date:

Categorie(s):