Issue #138

Monday · January 08, 2024

🥖 Palate Cleanser

Hey folks,

What is the best way to start your week? Maybe you will start by reading this newsletter while commuting, then enjoy your ride.

We are starting the pre-reinvent announcements this month, you will see a lot of stuff moving on AWS part. Keep an eyes on MAMIP that generally spoil some announcements by catching the required IAM permissions needed by new features or services.

If you are reading the web version of this newsletter, please considering subscribing, it helps us. A lot.

Have a great week ahead!

Victor

📋 Chef's selections

  1. The Deputy Is Confused About AWS Security Hub
  2. The Limit Does Not Exist: Hidden Visibility of AWS Service Limits
  3. AWS EKS Security Expert? Prove it!

🍛 Reddit threads on r/aws

🍪 API changes

🍹 IAM managed policy changes

Managed Policy changed since last week: 9
  1. 🚩 AWSDataLifecycleManagerSSMFullAccess
  2. AWSIPAMServiceRolePolicy
  3. 🚩 AWSLakeFormationCrossAccountManager
  4. AWSQuickSightSageMakerPolicy
  5. AWSSSMForSAPServiceLinkedRolePolicy
  6. 🚩 AWSSupplyChainFederationAdminAccess
  7. AmazonVPCNetworkAccessAnalyzerFullAccessPolicy
  8. AmazonVPCReachabilityAnalyzerFullAccessPolicy
  9. 🚩 SecurityAudit
Weekly diff

🤖 Powered by MAMIP | 🚩 Sensitive IAM Actions included

☕ CloudFormation resource changes

🎮 Amazon Linux vulnerabilities

This section will show you the latest (Important and Critical) CVEs on Amazon Linux.

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.