FINDING · DEPLOYMENT

AWS credentials distributed publicly to enable client access to the SQS API were flagged by GitHub's automated secret-scanning and AWS Support requested their deletion, even though the credentials carried intentionally limited permissions. The operational workaround adopted — base64-encoding credentials before public distribution — bypasses automated scanning but provides no real security.

From 2024-pu-exploringExploring Amazon Simple Queue Service (SQS) for Censorship Circumvention · §4.2 · 2024 · Free and Open Communications on the Internet

Implications

Tags

censors
generic
defenses
webrtc-pluggablebridges

Extracted by claude-sonnet-4-6 — review before relying.