IAM Policies with Resource Wildcard for Convenience
Developers use Resource: '*' in IAM policies to avoid specifying individual resource ARNs, often during rapid development or when unsure of exact resource requirements. This creates overly broad permissions that grant access to all resources of a given type, violating security best practices and potentially exposing sensitive data or allowing unintended operations.