Threxar honeypots registered an influx of automated SSRF probes attempting to read 169.254.169.254 AWS IMDSv1 endpoints. Cloud teams are advised to enforce IMDSv2 strictly.
AWS IMDSv1 Misconfigurations Leveraged in Automated SSRF Attacks
Tags:awscloud-securityimdsssrf