IAM misconfigurations cause most AWS security issues because permissions are often too broad. Some common issues occur when you over use admin access, ignore least privilege, and share credentials. Likewise, skipping MFA also make accounts easy targets and expose data, thus making you prone to attackers.