Security researchers have identified vulnerabilities in AWS serverless architectures where unauthenticated API gateways can be exploited by attackers. The findings highlight risks associated with improperly configured API endpoints that lack adequate authentication controls in serverless environments. The research underscores the importance of implementing proper security measures when deploying serverless applications on cloud platforms.