{"id":36658,"date":"2020-08-17T21:59:06","date_gmt":"2020-08-17T21:59:06","guid":{"rendered":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/"},"modified":"2020-08-17T21:59:06","modified_gmt":"2020-08-17T21:59:06","slug":"please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/","title":{"rendered":"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers"},"content":{"rendered":"<p>Albion College has a plan for students to return safely to campus this fall amid the COVID-19 coronavirus pandemic. It involves being tracked by an app that, at least until a few days ago, appears to have been insecure.<\/p>\n<p>The Michigan institution <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/www.albion.edu\/news-and-events\/recent-news\/news-archive\/14910-albion-college-partners-with-testing-centers-of-america-to-provide-robust-covid-19-protocol-for-students-faculty-staff\">announced<\/a> its plan on July 28, which calls for testing coordinated by Testing Centers of America and the use of a health monitoring app called Aura Sequential Testing.<\/p>\n<p>&#8220;All students will utilize <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/auratracker.org\/\">Aura<\/a>, an app developed by Nucleus Healthcare, that organizes the College\u2019s COVID-19 testing and public health approach,&#8221; Albion said in a statement. &#8220;The app will ask for daily health self-monitoring inputs prior to campus arrival in August and will offer daily reminders about common public health measures that everyone should be taking.&#8221;<\/p>\n<p>The idea has not proven all that appealing. A <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/www.change.org\/p\/albion-college-make-staying-on-campus-and-aura-app-optional-for-students\">petition<\/a> created by &#8220;concerned parents of Albion&#8221; was posted four days ago to Change.org in the hope of getting the school to reconsider its policy. It objects to the plan which requires students, but not staff, to remain on campus for 14 weeks and be subjected to tracking, data gathering, and work restrictions.<\/p>\n<p>&#8220;This protocol that STUDENTS ONLY are required to sign and abide by says that they will download an app that tracks their locations, that they will not leave campus for 14 weeks, agree to give Albion College medical information that is none of their business and that they will not have jobs off campus,&#8221; the petition says.<\/p>\n<p>Perhaps more concerning is that the Amazon Web Services access keys for the backend servers of the Android version of Aura were, it is claimed, accessible within the app&#8217;s code. The credentials were found by an Albion College student, who asked to be identified by her Twitter handle Q3w3e3. The keys could, we&#8217;re told, be used to access the app&#8217;s backend data and virtual machines in the Amazon-hosted US-West-2 region, including people&#8217;s COVID-19 test result and medical insurance information.<\/p>\n<p>Q3w3e3, who said she made her Twitter account private following media inquiries about her posts, told <i>The Register<\/i> in a phone interview that she found the hardcoded AWS credentials stored within the Android app.<\/p>\n<div class=\"promo_article\"><img loading=\"lazy\" decoding=\"async\" src=\"https:\/\/regmedia.co.uk\/2017\/11\/28\/shutterstock_tinfoil_hat.jpg?x=174&amp;y=115&amp;crop=1\" width=\"174\" height=\"115\" alt=\"tinfoil hat (shutterstock)\"><\/p>\n<h2 title=\"He would say that\u2026 because he's not an actual supervillain\">Bill Gates debunks &#8216;coronavirus vaccine is my 5G mind control microchip implant&#8217; conspiracy theory<\/h2>\n<p><a href=\"https:\/\/www.theregister.com\/2020\/07\/24\/bill_gates_debuts\/\"><span>READ MORE<\/span><\/a><\/div>\n<p>And she said it&#8217;s quite possible the stored data has already been compromised because there are bots that regularly scrape the App Store and Google Play for apps with hardcoded credentials to exploit.<\/p>\n<p>Q3w3e3 said she tried twice to report her security concerns to the maker of the application, though her calls were ignored. She also claims to have raised the issue with Albion College. But instead of receiving a direct response, the school appears to have sent out a general message reassuring its community that the app is safe.<\/p>\n<p>Shortly after she posted about the flaw, a new version of the Android app was uploaded on Thursday, August 13. The AWS keys are no longer present in that version, Q3w3e3 said.<\/p>\n<p>Aura collects quite a bit of data: identity information, contact information, technical information, demographic information, profile information, usage information, and marketing and communication information.<\/p>\n<p>Nucleus did not respond to a request for comment. But the company claims in the Aura <a target=\"_blank\" rel=\"nofollow noopener noreferrer\" href=\"https:\/\/auratracker.org\/privacy_policy\">privacy policy<\/a> that its app is HIPAA compliant.<\/p>\n<p>Q3w3e3 expressed doubts about the company&#8217;s ability to keep user data private, noting that the corporate entity named in the privacy policy, Nucleus Careers, LLC, is a recruiting company focused on machine learning and AI.<\/p>\n<p>&#8220;They have no history I can find in secure healthcare,&#8221; she said. &#8220;When it comes to the [Albion] policy, I think it&#8217;s a good idea,&#8221; said Q3w3e3. &#8220;But it needs to be well-implemented.&#8221;<\/p>\n<p>Albion College did not respond to a request for comment. \u00ae<\/p>\n<p> READ MORE <a href=\"https:\/\/go.theregister.com\/feed\/www.theregister.com\/2020\/08\/17\/albion_college_coronavirus_tracking_app\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>In America, student schools you! Albion College has a plan for students to return safely to campus this fall amid the COVID-19 coronavirus pandemic. It involves being tracked by an app that, at least until a few days ago, appears to have been insecure.\u2026 READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":36659,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[63],"tags":[],"class_list":["post-36658","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-the-register"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2020-08-17T21:59:06+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/08\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"174\" \/>\n\t<meta property=\"og:image:height\" content=\"115\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers\",\"datePublished\":\"2020-08-17T21:59:06+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/\"},\"wordCount\":658,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg\",\"articleSection\":[\"The Register\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/\",\"name\":\"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg\",\"datePublished\":\"2020-08-17T21:59:06+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg\",\"width\":174,\"height\":115},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/","og_locale":"en_US","og_type":"article","og_title":"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2020-08-17T21:59:06+00:00","og_image":[{"width":174,"height":115,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/08\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg","type":"image\/jpeg"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers","datePublished":"2020-08-17T21:59:06+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/"},"wordCount":658,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/08\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg","articleSection":["The Register"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/","url":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/","name":"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/08\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg","datePublished":"2020-08-17T21:59:06+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/08\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2020\/08\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers.jpg","width":174,"height":115},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/please-stop-hard-wiring-aws-credentials-in-your-code-looking-at-you-uni-covid-19-track-and-test-app-makers\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Please stop hard-wiring AWS credentials in your code. Looking at you, uni COVID-19 track-and-test app makers"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/36658","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=36658"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/36658\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/36659"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=36658"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=36658"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=36658"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}