Identifies the suspicious use of AssumeRole. Attackers could move laterally and escalate privileges.
Read the full analysis on IntelFusions