Hacker News new | ask | show | jobs
by russellendicott 743 days ago
I've been saying this in jest for years.

KMS is a money printing racket for AWS. It only really helps you if someone walks out of a data center with your hard drive. For everything else the attackers are just going to get your IAM creds which have open access to all your keys.