AWS STS AssumeRole Misuse — Detection Rule

Identifies the suspicious use of AssumeRole. Attackers could move laterally and escalate privileges.

Read the full analysis on IntelFusions