You'll noticeTier: how much it should matter to you
1Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
PermissionsArea: what it touches
ImprovementsKind: in v2.1.280,
ImprovementsSection of the release
What
The pattern used to scrub AWS access keys from transcripts and logs previously matched only keys starting with AKIA or ASIA. It now also matches ABIA, ACCA, and the STS pattern A3T[A-Z0-9], each followed by 16 alphanumeric characters, replacing matches with <token>.
Why
AWS issues credentials under several different prefixes; broadening the pattern reduces the chance that a real AWS credential of one of these other types leaks into a transcript or log unredacted.