AWS has introduced Amazon Bedrock API keys in addition to its broader push away from long-lived IAM access keys toward modern, temporary authentication mechanisms. Bedrock supports locally generated short-term keys from presigned URLs as well as long-term bearer tokens backed by IAM users; the latter can be created without an expiration date and are submitted directly in HTTPS headers. By default, long-term keys receive the AmazonBedrockLimitedAccess policy, which may grant more access than is necessary for narrowly scoped model-invocation workloads.
Researchers found long-term Bedrock API keys exposed in public GitHub repositories within two weeks of the feature's launch. AWS added the keys to its secret-scanning process and now quarantines associated IAM users and notifies affected customers when exposures are detected. Organizations should favor temporary, role-based credentials, restrict IAM-user creation through service control policies, and consider denying bedrock:CallWithBearerToken where Bedrock API keys are not required, blocking both long- and short-term API-key use.

See attribution, scope, and your downstream exposure.
4 events from the most recent confirmed update back to the earliest known activity.
AWS added the iam:ServiceSpecificCredentialAgeDays and iam:ServiceSpecificCredentialServiceName condition keys, enabling policy controls over Bedrock API-key age and service-specific credentials.
AWS added long-term Bedrock API keys to GitHub secret scanning. When detected in a public repository, AWS quarantines the associated IAM user and notifies the customer through a support case and email; AWS also investigated and quarantined previously committed keys it found.
Long-term Bedrock API keys were found exposed in public GitHub repositories within two weeks of their launch.
AWS introduced Amazon Bedrock API keys, including long-term bearer tokens backed by IAM users and short-term keys generated locally from presigned URLs. Long-term keys can be configured without expiration and receive the AmazonBedrockLimitedAccess policy by default.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See attribution, scope, and whether this vendor sits anywhere in your supply chain.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.