Quick Development Shortcuts
Using Action: '*' during development for convenience and failing to refine permissions before production deployment.
Authorization bypass enabling any API action, leading to privilege escalation, data tampering, resource deletion, or service abuse across the account.
Using Action: '*' during development for convenience and failing to refine permissions before production deployment.
Sourcery automatically identifies authorization bypass from wildcard actions in aws iam policy documents and many other security issues in your codebase.