@AWSCLI there is a python package on pypi `aws` -- if someone could highjack that package, say through brute force password guessing, I bet that person could steal a lot of aws credentials. Very easy to install that one instead of awscli.
https://pypi.org/project/aws/
Post
July 22, 2020