Google Cloud Service Account key created

이 페이지는 아직 한국어로 제공되지 않으며 번역 작업 중입니다. 번역에 관한 질문이나 의견이 있으시면 언제든지 저희에게 연락해 주십시오.

Goal

Detect when a new service account key is created. An attacker could use this key as a backdoor to your account.

Strategy

This rule lets you monitor Google Cloud Admin activity audit logs to detect the creation of a service account key.

Triage and response

Contact the user who created the service account key to ensure they’re managing the key securely.

Changelog

31 January 2023 - Updated tags.