Skip to content
This repository has been archived by the owner on Jan 3, 2023. It is now read-only.

Risk: over-authorization of AWS IoT policy #13

Open
P-Verifier opened this issue May 16, 2022 · 0 comments
Open

Risk: over-authorization of AWS IoT policy #13

P-Verifier opened this issue May 16, 2022 · 0 comments

Comments

@P-Verifier
Copy link

We are a security research team and we recently discovered that there is an over-authorization security issue with this project's IoT policy.
The affected file is as following:

1. iot-samples-cloud-setup/support/aws/aws-device-policy.json
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant