These threat actors were being then capable to steal AWS session tokens, the short-term keys that permit you to request non permanent qualifications in your employer?�s AWS account. By hijacking active tokens, the attackers ended up capable to bypass MFA controls and acquire usage of Protected Wallet ?�s AWS account. By timing their efforts to