THREAT OPS › Threat News › A few notes on AWS Nitro Enclaves: KMS integration
A few notes on AWS Nitro Enclaves: KMS integration
<p>Nitro Enclaves and <a href="https://blog.trailofbits.com/2024/02/14/cloud-cryptography-demystified-amazon-web-services/">Key Management Service</a> (KMS) feel like a natural fit: since the KMS can verify attestation documents generated by the enclaves, developers can offload key management tasks from their applications to the AWS-managed service. But integrating an external service with your tr
MITRE ATT&CK techniques
Indicators of compromise
- https://repost.aws/questions/QUV7ubqz8ETRCOxHSuSH6zDQ/unable-to-delete-kms-customer-managed-key-cmk-using-administratoraccess-role-or-root-login-credentials#ANQjr27vimRP6DEYTiZDgxswurl
- https://asecure.cloud/a/scp_kms_delete_keys/url