Aws Cognito Secret Key

Description

The source code repository contains sensitive information: AWS Cognito Secret Key

Weakness:

009 - Sensitive information in source code

Category: Information Collection

Detection Strategy

    Matches AWS Cognito Secret Key patterns in source code and configuration files

Vulnerable code example

cognito_client_secret=ABCDEFGHIJKLMNOPabcdefgh
COGNITO_CLIENT_SECRET=ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrst
cognito_clientsecret = ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789+_