📣 Sponsor
Unburden security specialists using your product!
Simplify your AWS access management workflows and event analysis with k9 Security's cloud access management toolkit.
Learn how to integrate scalable identity entitlement management into your MSSP, MDR/XDR, CNAPP, or CloudOps service:
🐿 In a nutshell
This week, I'll be sharing some valuable information about AWS Security: Look out for insights on VPC Lattice, now available as GA, an informative paper on S3 Logging, and a great slide deck on AWS Pentesting.
I also came across a fascinating paper by Dylan Patel from SemiAnalysis, discussing AWS's silicon strategy and the potential risks for Amazon's future in computing.
Don't forget, I'll be attending the AWS Summit in Paris tomorrow. If you're a French reader, I'd love to meet you there! Let's chat about all things AWS.
🔦 Highlight of the week
📢 MAMIP (Monitor AWS Managed IAM Policies)
Policies changed since last week (17):
- AWSNetworkFirewallServiceRolePolicy
- AWSWAFConsoleFullAccess
- AWSWAFConsoleReadOnlyAccess
- AWSWAFFullAccess
- AWSWAFReadOnlyAccess
- AmazonRDSFullAccess
- AmazonRDSReadOnlyAccess
- VPCLatticeFullAccess
- VPCLatticeReadOnlyAccess
- VPCLatticeServicesInvokeAccess
[...]




😈 Fun with SSRF - Turning the Kubernetes API Server into a port scanner
@raesene shows how to leverage existing functionality on #Kubernetes to perform scans from the API server using validating admission webhooks
🛠️ PoC
github.com/raesene/k8s_ss…
raesene.github.io/blog/2023/01/0…



🔎 awesome-detection-rules
A collection of threat detection rules / rules engines, including:
* Yara
* Sigma
* Falco
* Zeek
* Snort/Suricata
* Splunk
+ more
By @jason_trost
#infosec #blueteam
github.com/jatrost/awesom…



Check out my new post on the newly GA'd #AWS #Amazon VPC Lattice service! 📝🌐
onecloudplease.com/blog/exploring…



🪣"practical guidance for your AWS security program": ramimac.me/s3-logging 🪣
This time, we're tackling S3 Logging! As one of the foundational services, I expected "best practices for s3 logging" to be well established. I was disappointed ...



To answer @QuinnyPig's question: I implemented something like this, and I want to implement it again. IMO, enriched VPC flow logs are an untapped source of extremely valuable data. I just don't have access to realistic training data and need help. Blog:
awsteele.com/blog/2021/05/1…




New research from @wiz_io! Customers with the misconfiguration identified will need to take action!

I hacked into a @bing CMS that allowed me to alter search results and take over millions of @Office365 accounts.
How did I do it? Well, it all started with a simple click in @Azure… 👀
This is the story of #BingBang 🧵⬇️




I have a feeling every single person in the room with Elon when he made this pricing decision knew it would be met with the Arrested Development banana meme, but was too afraid to speak up

We are also launching a new Basic (v2) access for hobbyists with 10,000 GET/month and 50,000 POST/month, 2 app IDs, and Login with Twitter for $100/month.
Subscribe now: developer.twitter.com/en/portal/prod…


https://www.oregonlive.com/business/2023/03/amazon-fights-oregon-data-center-clean-energy-bill.html
But what about the new sustainability pillar!!?!?!?!
Shit like this is the exact reason I say that their things like the "Sustainability Pillar" are pure bullshit.
I love you to death AWS. But don't pretend you care about the environment. You're a big corporate machine with one goal: To …
Two aws reps with Amazon.com email addresses contacted me. They keep trying to push a well-architected review. They claim they have a specific vendor in mind for me. I told them that I was not interested, but then they tried to get me to install a tool that appears to …
Amazon VPC Lattice is an application networking service that consistently connects, monitors, and secures communications between your services, helping to improve productivity so that your developers can focus on building features that matter to your business. You can define policies for network traffic management, access, and monitoring to connect compute …
Our application is hosted on Elastic Beanstalk and we've been trying to select one of the TLS 1.3 security policies in the management console. However, we've been consistently receiving an error message stating that the policy is not supported. This has been a frustrating experience for us, as we know …
- 🖊️ Don't miss out on the latest industry insights - stay ahead of the game by subscribing
- 📢 Gain visibility for your brand by sponsoring our content
- 💌 If you have any suggestions for future topics, let us know