Hacker News new | ask | show | jobs
by antaviana 3346 days ago
For AWS it makes sense, because typically AWS discounts the customer the damage made by stolen credentials.

For example, if a dozen EC2 instances are launched with credentials poached from Github to mine bitcoins, I know AWS used to remove the rogue extra charge from the customer bill, as a token of gratitude (to avoid losing the customer by a sense of defenselessness).

1 comments

Yes. AWS actually does scan on a regular basis. They have caught some before any harms done. I don't know how often though.