AWS Security Blog

Tag: cross-account privilege design escalation

Scaling cross-account AWS KMS–encrypted HAQM S3 bucket access using ABAC

This blog post shows you how to share encrypted HAQM Simple Storage Service (HAQM S3) buckets across accounts on a multi-tenant data lake. Our objective is to show scalability over a larger volume of accounts that can access the data lake, in a scenario where there is one central account to share from. Most use […]