
『Hardcoded AWS cloud credentials in the Worksnaps client gave an attacker complete access the Worksnaps AWS infrastructure as AWS root account』 CVE-2025-10560 Hardcoded Root Cloud Credentials in Application Binaries in Silver Leaf Technologies Worksnaps https://sec-consult.com/vulnerability-lab/advisory/hardcoded-root-cloud-credentials-in-application-binaries-in-silver-leaf-technologies-worksnaps/
Post summary
The advisory discloses that hardcoded AWS credentials in the Worksnaps client allow root-level access to the vendor's AWS infrastructure.

