Product
AWS Secrets Manager
- First Reported
- May 14, 2026
- Latest Reported
- Jul 11, 2026
Reported Context (2)
- APIs using stolen credentials: cloud metadata services, Kubernetes (/api/v1/namespaces), AWS Secrets Manager and SSM, and others. Compromised Jscrambler npm Releases Deliver Cross-Platform Infostealer
- For each credential set found, the module queries both AWS Secrets Manager and AWS Systems Manager Parameter Store across all 19 regions in its target list. Secrets stored in the Parameter Store with encryption enabled TeamPCP Python Toolkit Uses FIRESCALE and Victim GitHub Accounts to Survive C2 Disruption
Malware (1)
Threat Actors (1)
MITRE ATT&CK (32)
Vendors (3)
Products (58)
Tools (1)
Industries (2)
Countries (3)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.