Report highlights persistent credential management flaw
Summary
The 2025 State of Cloud Security report highlights a significant cybersecurity threat due to the prevalence of outdated cloud identities, with 59% of AWS IAM users and 55% of Google Cloud service accounts having active keys older than one year. This creates a substantial attack surface, increasing the risk of unauthorized access and potential breaches.
Original Article Summary
The 2025 State of Cloud Security report found that a majority of cloud identities have active keys older than one year, including 59% of AWS IAM users and 55% of Google Cloud service accounts, creating a significant attack surface.
Impact
AWS IAM users, Google Cloud service accounts
In the Wild
Unknown
Timeline
Disclosed in 2025 report
Remediation
Regularly audit and rotate cloud identity keys, implement key management best practices, and enforce policies for key expiration and renewal.