2008-12-18 00:00 UTC
Other
Other
Signature version 1 (SigV1) is insecure
When making authenticated API requests to AWS, the requests must be signed with your AWS access key. The initial signing algorithm, SigV1, was vulnerable to collisions. A person-in-the-middle attack would be able to modify signed requests via specially constructed collisions.
P0