Issue #135
Monday · October 20, 2023
๐ฅ Palate Cleanser
Hey folks,We all know that AWS environments are a treasure trove for your business, but they can also be a playground for cyber threats if not monitored properly. That's why I'm stoked to announce our upcoming webinar: "Monitoring your AWS Environments for Security Events."
Whether you're a seasoned pro or new to the AWS game, this webinar will give you the lowdown on how to set up effective monitoring and alerting for your cloud resources. And here's the kicker: we're focusing on aย free and open-source tooling that you can deploy in minutes.
๐ Topics we're covering:
- Deploying a free and open-source tool for AWS security monitoring
- Essential metrics and alerts you shouldn't sleep on
- How to tailor your settings for max security with minimal hassle
Don't miss out on leveling up your AWS security game. Hit the link to save your spot.
Catch you there,
Victor
๐ Chef's selections
๐ Reddit threads on r/aws
- Security architecture Q: At what point do you not rely just on your central firewall?
- Org CloudTrail & security hub control metrics
- How do you manage Users with IAM Policy?
- Need to give invokeLambda access to all other lambda in account
- Updated RDS Certificate Authority (CA) but now Lambda can't connect to RDS due to "handshake_failure" where to update certificates?
- AWS Associating WAF for App Runner
- Audit account in control tower
- Runtime CIS Benchmark for Amazon Linux Kernel 4.14
- Building a Vulnerable AWS Architecture for CSPM Study
- Looking to see if AWS supports security group rules based on hostname (or other method) for an EC2 instance
- It's not you, it's us error
- Security Best Practices for an internal password manager
- Suspicious activity on my lightsail instance
- RDS DB hacked because bad credentials - How do I secure it? (Student)
๐ช API changes
- Nothing to show here: re:Invent23' Freeze?
โ CloudFormation resource changes
๐ฎ Amazon Linux vulnerabilities
This new section will show you the latest (Important and Critical) CVEs on Amazon Linux.
Amazon Linux 2023
- ALAS-2023-377 (important): curlย - CVE-2023-38545, CVE-2023-38546
Amazon Linux 2
- ALAS-2023-2287 (important): curlย - CVE-2023-38545, CVE-2023-38546