Issue #136

Monday · July 15, 2023

🥖 Palate Cleanser

Hey folks,

Got some cool stuff for you this week, particularly a must-read on essential monitoring for AWS Containers, courtesy of Cloudonaut.

Heads up, AWS has made AMI Block Public Access the default setting for new accounts and those without a public AMI since July 15, 2023. A smart move to avoid unintentional sharing and beef up security. Need a public AMI? You can turn it off manually. This is global, by the way.

I'm digging how AWS is ramping up security measures at the account level and making them default.

That's Security by Design for you.

Victor

📋 Chef's selections

  1. AMI Block Public Access now enabled for all new accounts and existing accounts with no public AMIs
  2. Loom’s nightmare AWS outage and how it might have been prevented
  3. How Cloudflare mitigated yet another Okta compromise

🍛 Reddit threads on r/aws

🍪 API changes

☕ CloudFormation resource changes

🎮 Amazon Linux vulnerabilities

This section will show you the latest (Important and Critical) CVEs on Amazon Linux.

Amazon Linux 2023
Amazon Linux 2

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.