Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
AWS Databases & Analytics

AWS Databases & Analytics Vendor Cyber Rating & Cyber Score

amazon.com

At AWS, we believe the next wave of reinvention will be driven by data. The ideal data strategy isn’t one size fits all. It’s adapted for your needs. It gives you the best of both data lakes and purpose-built data stores. It lets you store any amount of data you need at a low cost, and in open, standards-based data formats. It isn’t restricted by data silos, and lets you empower people to run analytics or machine learning using their preferred tool or technique. And, it lets you securely manage who has access to the data. Choose from 15 databases, 12 analytics, and 30 machine learning services – more than you’ll find anywhere else - to help you get insights from your data.


ADA A.I CyberSecurity Scoring

ADA
Company Information
Website:https://aws.amazon.com/products/databases/
Employees number:None
Number of followers:266,687
NAICS:5415
Industry Type:IT Services and IT Consulting
Homepage:amazon.com
ADA Risk Score (AI oriented)
Between 750 and 799
logo
ADAIT Services and IT Consulting
Updated:
04/04/2026
765/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
ADA Global Score (TPRM)
xxxx
logo
ADAIT Services and IT Consulting
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

ADA
ADAFair
Current Score
765Baa (FAIR)
01000
1 incidents
-15 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
766Before Incident
MAY 2026
765Before Incident
APRIL 2026
765Before Incident
MARCH 2026
764Before Incident
FEBRUARY 2026
764Before Incident
JANUARY 2026
778Before Incident
Cyber Attack
15 Jan 2026ADA
Ctrl-Alt-Intel and AWS: Suspected DPRK Threat Actors Compromise Crypto Firms, Steal Keys and Cloud Assets in Coordinated Attacks

North Korea-Linked Hackers Target Crypto Supply Chain in Coordinated Campaign

763After Incident
LOW-15
HUNAWS1772735373
North Korea-Linked Hackers Target Crypto Supply Chain in Coordinated Campaign A sophisticated cyberattack campaign, attributed to North Korea-linked threat actors, has targeted multiple layers of the cryptocurrency supply chain, compromising staking platforms, exchange software providers, and exchanges themselves. The operation, uncovered in January 2026, resulted in the theft of proprietary source code, private keys, and cloud-stored secrets, marking one of the most calculated intrusions in the crypto sector in recent months. The attackers employed two distinct intrusion methods: exploiting CVE-2025-55182, a vulnerability in the React2Shell framework, to breach crypto staking platforms, and leveraging stolen AWS access tokens to bypass initial exploitation and directly infiltrate cloud infrastructure. Researchers at Ctrl-Alt-Intel gained rare insight into the attackers’ operations after discovering exposed open directories containing shell history logs, archived source code, and tool configurations, revealing the full scope of the campaign. Among the stolen assets were .env files containing hardcoded private keys for Tron blockchain wallets, with blockchain records showing 52.6 TRX transferred during the exploitation window though it remains unclear whether the North Korea-linked actors or another threat group executed the transfer. Additionally, compromised Docker container images from a cryptocurrency exchange contained hardcoded database credentials, internal configurations, and proprietary exchange logic, aligning with North Korea’s documented strategy of pre-positioning for large-scale crypto theft. In the AWS-focused phase, the attackers conducted broad enumeration of EC2 instances, RDS databases, S3 buckets, Lambda functions, and EKS clusters, using grep searches to extract sensitive files like .pem, .key, and .ppk credentials. They also downloaded Terraform state files, which often store infrastructure secrets, and pivoted into Kubernetes clusters by updating kubeconfig files. Once inside, they exfiltrated ConfigMaps, Kubernetes Secrets, and Docker container images in plaintext. For command-and-control, the threat actors deployed VShell on port 8082 and used FRP as a tunneling proxy over port 53 (DNS), evading standard network monitoring. Connections to their primary VPS were routed over IPv6, further bypassing detection tools designed for IPv4 traffic. The campaign underscores the attackers’ meticulous planning and deep access to critical crypto infrastructure.
INCIDENT DETAILS -
TYPE
Supply Chain AttackData BreachCloud Infrastructure Compromise
MOTIVATION
Financial gainTheft of cryptocurrency assets
IMPACT
Proprietary source codePrivate keysCloud-stored secrets.env filesDocker container imagesDatabase credentialsTerraform state filesKubernetes SecretsConfigMapsCrypto staking platformsExchange software providersCryptocurrency exchangesAWS cloud infrastructure (EC2, RDS, S3, Lambda, EKS)Operational Impact: Compromise of critical crypto infrastructure and potential large-scale crypto theft
DATA BREACH
Proprietary source codePrivate keysCloud-stored secretsDatabase credentialsTerraform state filesKubernetes SecretsConfigMapsSensitivity Of Data: High.env.pem.key.ppk
DECEMBER 2025
778Before Incident
NOVEMBER 2025
778Before Incident
OCTOBER 2025
778Before Incident
SEPTEMBER 2025
778Before Incident
AUGUST 2025
778Before Incident
JULY 2025
778Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for ADA ?
?
What was ADA's A.I Rankiteo Cyber Score in May 2026 ?
?
What was ADA's A.I Rankiteo Cyber Score in April 2026 ?
?
What was ADA's A.I Rankiteo Cyber Score in March 2026 ?
?
What was ADA's A.I Rankiteo Cyber Score in February 2026 ?
?
What was ADA's A.I Rankiteo Cyber Score in January 2026 ?
?
What was ADA's A.I Rankiteo Cyber Score in December 2025 ?
?
What was ADA's A.I Rankiteo Cyber Score in November 2025 ?
?
What was ADA's A.I Rankiteo Cyber Score in October 2025 ?
?
What was ADA's A.I Rankiteo Cyber Score in September 2025 ?
?
What was ADA's A.I Rankiteo Cyber Score in August 2025 ?
?
What was ADA's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on ADA's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with ADA ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view ADA's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?