AWS has blocked their IAM credential report API (generate-credential-report ) for all customers.
Calls to that API will receive LimitExceeded exception, therefore there is no way to fetch some of the IAM related properties until AWS resolves this issue.
We are working with AWS support [Case 5057948981], and were notified that they have identified a solution and actively testing it in order to unblock the API. Still, there is no ETA on AWS side to resolve the issue.
While not presented in their status page, you can find additional info in the AWS forums: https://forums.aws.amazon.com/thread.jspa?messageID=847541&tstart=0
How this affects your compliance visibility? Some of the IAM information is still regularly updated and can be evaluated, including permissions and other information, yet the following properties will not get updated until this issue is resolved.