AWS ACCESS KEYS HACKED
Amin Ahmed Khan
Data and AI Solutions Architect @ Platformance.io | Generative AI | Data Engineering | AWS
AWS BILLING ALERT
To All developers and sys ops
Everyone kindly be very careful using your aws account. One of my clients aws account just got hacked. it was just an access key that got compromised.
He got a bill for $6,466.09 for the last month. Kindly be very careful
1) delete root account access keys
2) enable MFA for all accounts
3) rotate Keys
4) Setup aws billing alerts
5) create IAM user with only specific rights in use
6) Create strong password for all accounts
These links will help you
https://docs.aws.amazon.com/awsaccountbilling/latest/aboutv2/free-tier-alarms.html
https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_access-keys.html
https://docs.aws.amazon.com/IAM/latest/UserGuide/best-practices.html
Kindly share