Identify Privileged Secrets

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
L2 Linker

By Taylor Smith, Senior Product Manager

 

We’re helping customers contextualize and prioritize their exposed secrets. We do this by validating the secret and adding the IaC resource when relevant. Today, we added additional contextualization where we can identify Privileged secrets!  Prisma Cloud Secret Scanning identifies AWS Access Key ID and Secret Access Key, then validates them. If the secret is valid, we use the IAM Security module to check to see if the role attached to the secret has privileged access. If so, we mark it as Privileged and link to Investigate with the query to identify the secret’s permission set to investigate the impact of the exposed secret.

 

Figure 1:  Validated Secrets Demo_Palo-Alto-Networks 

 

Console.jpg

Figure 2:  Projects_Palo-Alto-Networks 

 

About the Author

 

TSmith18_0-1689731431915.png

 

 

  • 1403 Views
  • 0 comments
  • 1 Likes
Register or Sign-in
Labels