Skip to content

project

AWS STS

AWS Security Token Service issues temporary, limited-privilege credentials for IAM roles, enabling cross-account access and federated authentication.

Known aliases

  • AssumeRole
  • Security Token Service
  • STS
  • sts:SetSourceIdentity

Relationships

No evidence-backed relationships are recorded.

Current stories

build1 publisher

Revoking one leaked S3 presigned URL takes down every URL its credential signed

AWS lets an S3 presigned URL live up to seven days, and anyone holding a leaked one can use it until it expires or its signer is revoked. Revoking the signer kills every URL it made, so short expiries and a bucket-level cap on signature age are the practical defence.

Publishers:dev.to

Reality

Evidence55
Adoption
Insufficient
Hype gap+5
Incentives
Insufficient
Confidence50