Hacker News new | ask | show | jobs
IAM Role Trust Policies: Misconfigurations Hiding in Plain Sight (token.security)
1 points by simplesort 418 days ago
1 comments

The instance profile example makes it seem like you need to specify the account for "Service": "ec2.amazonaws.com" just with another syntax, while service principals are always in the same account AFAIK.