Every environment I have audited has the same ghost. An IAM user with an access key and a secret key. Created for a script, a cron job, a device that needed to reach AWS.

Source: [Dev.to](https://dev.to/mariogongora/iam-roles-anywhere-aws-access-with-zero-static-keys-3kmd)

Sponsored