Hint: it's not LS0t
, but close.
This is an old one from the archives.
AWS EKS was logging ServiceAccount tokens in plaintext, the very same used to AssumeRoleWithWebIdentity
, or connect to the kubernetes API server.
This occurred for us between March 2020 and May 2021.