CVE-2025-2598 is an information disclosure issue in the AWS Cloud Development Kit Command Line Interface (AWS CDK CLI). When the CDK CLI is used with a custom credential plugin that returns AWS credentials including an expiration property (i.e., temporary credentials metadata), the CLI prints the retrieved credential material (accessKeyId/secretAccessKey/sessionToken) to console output. This results in inadvertent exposure of sensitive AWS access key material in interactive terminal output and/or any captured logs (e.g., CI logs).
Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.
What it means. What to do now. Patch path, mitigations, and the assume-compromise checklist.
What an attacker gets, and what they’ve been doing with it.
If you can’t patch tonight, do this now.
expiration property; (2) if you control the plugin, remove the expiration field from the returned credentials object to prevent the CLI from treating them as temporary (noting the tradeoff that credentials will not auto-refresh and workflows may fail after expiration); and (3) restrict access to terminals and CI/CD logs/artifacts where CDK CLI output is stored, and consider log redaction/secret-scanning for historical exposure.Patch, then assume compromise.
2 valid exploits after Mallory filtered fakes, detection scripts, and README-only repos.
This repository contains a single Bash script, 'extract.sh', which is designed to extract AWS credentials from a local plugin file associated with the AWS CDK (Cloud Development Kit) versions 2.172.x to 2.178.1. The script checks for the presence of the 'cdk' command and verifies the version. If the correct version is found, it attempts to parse a plugin file for AWS credentials (accessKeyId, secretAccessKey, sessionToken, expiration) and writes them to a temporary file (/tmp/creds.txt). It also creates a log file and attempts to exfiltrate this log file to a remote host using SCP. After execution, it cleans up by removing the created files. The exploit is local in nature, requiring access to the target system and the relevant plugin file. The script does not directly exfiltrate the credentials file, but the log file is sent to a remote host, which could be used for further exploitation or as a proof of concept for exfiltration. The repository is a proof-of-concept exploit targeting specific versions of AWS CDK on Linux systems.
This repository contains a single Bash script designed to exploit a local misconfiguration or vulnerability in specific versions of the AWS CDK (versions 2.172.x through 2.178.1). The script checks for the presence of the AWS CDK and a plugin file containing AWS credentials. If found, it extracts the credentials and writes them to a temporary file. It also creates a log file and attempts to exfiltrate this log file to a remote host using SCP. The script then deletes all traces of its activity, including the credentials file, log file, output file, and itself. The exploit is a proof-of-concept for local credential extraction and exfiltration, requiring local access and specific configuration on the target system. No network endpoints are hardcoded except for the SCP exfiltration command, which uses a placeholder remote host.
Products and vendors Mallory has correlated with this vulnerability. Open in Mallory to drill down to specific CPE configurations and version ranges.
Vendor-confirmed product mapping. Mallory continuously reconciles this list against your asset inventory.
1 sources tracked across advisories and community write-ups. News coverage will land here when it surfaces.
No news coverage yet. Advisories and community discussion only.
Query your assets running an affected version, and investigate the blast radius.
Every observed campaign linking this CVE to a named adversary.
Malware families riding this exploit, with evidence and IOCs.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Cross-references every affected SKU, including bundled OEM variants.
Community discussion across Reddit, Mastodon, and other social sources.