TGViewer
CloudSec Wine CloudSec Wine @cloud_sec · 2.27K subscribers
Post #552 755
🔶 AWS CloudTrail vulnerability: Undocumented API allows CloudTrail bypass

The Datadog Security Research Team identified a method to bypass CloudTrail logging for specific IAM API requests via undocumented APIs. This technique would allow an adversary to perform reconnaissance activities in the IAM service after gaining a foothold in an AWS account, without leaving any trace of their actions in CloudTrail.

https://securitylabs.datadoghq.com/articles/iamadmin-cloudtrail-bypass

#aws
  • 🔥 6
More from @cloud_sec
  1. Oct 9, 2026⚠️ Discovering and exploiting a remote code execution vulnerability in OpenCode Datadog Se…
  2. Oct 8, 2026🤖 How DigitalOcean Manages Credentials for Autonomous Agents DigitalOcean Managed Agents…
  3. Oct 7, 2026👩‍💻 Storm-3168: Agentic-driven cloud attacks using compromised service principals Storm-…
  4. Oct 6, 2026🤖 Securing the software factory at machine speed GitLab's CISO argues that agentic AI dev…
  5. Oct 5, 2026🤖 Throw Away the Playbook: Security in the AI-Native SDLC We, as an industry, should have…
  6. Oct 2, 2026🔴 Strengthen your CI/CD pipeline with new Secure Source Manager capabilities Google Cloud…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →