These risk actors were then in a position to steal AWS session tokens, the short-term keys that allow you to request temporary credentials to your employer??s AWS account. By hijacking active tokens, the attackers were able to bypass MFA controls and gain use of Secure Wallet ??s AWS account. By timing their efforts to coincide Along with the deve