These menace actors ended up then in the position to steal AWS session tokens, the short term keys that enable you to ask for momentary credentials to your employer?�s AWS account. By hijacking active tokens, the attackers were able to bypass MFA controls and achieve access to Secure Wallet ?�s AWS account. By timing their efforts to coincide