Attack at CISA that involved gaining access to a company’s github code in a repo containing a AWS token with weak access control.