in automated-actions/AWS_RISK_CREDENTIALS_EXPOSED/lambda_functions/delete_access_key_pair.py [0:0]
def lambda_handler(event, context):
account_id = event['account']
time_discovered = event['time']
details = event['detail']
access_key_id = details['affectedEntities'][0]['entityValue']
print('Looking up username for access key pair...')
username = get_username_from_key(access_key_id)
print('Deleting exposed access key pair...')
delete_exposed_key_pair(username, access_key_id)
return {
"account_id": account_id,
"time_discovered": time_discovered,
"username": username,
"deleted_key": access_key_id
}