Issue #141

Monday · January 29, 2024

๐Ÿฅ– Palate Cleanser

Hey folks,

As you make your way to the vibrant casinos of Las Vegas, gearing up for an exciting re:Invent week, I'm here to bring you a condensed pre-re:Invent update.

Expect a comprehensive follow-up in our next issue, packed with information on new services and features.

In line with our yearly tradition, I've upgraded the @mamip_aws schedule to perform IAM Managed Policies scans every 30 minutes.

This enhancement ensures we stay ahead of the curve, promptly capturing any new #AWS services and features unveiled at #reInvent.

Wishing you all a fantastic re:Invent,

Victor

๐Ÿ“‹ Chef's selections

  1. Chris's AWS pre:Invent 2023 edition
  2. New CISO of AWS:ย Chris Betz
  3. Scaling data access with Amazon S3 Access Grants

๐Ÿฅ— AWS security blogs

๐Ÿ› Reddit threads on r/aws

๐Ÿง IAM permission changes

๐Ÿช API changes

๐Ÿน IAM managed policy changes

Managed Policy changed since last week: 19
  1. ๐Ÿšฉ AWSIAMIdentityCenterAllowListForIdentityContext
  2. ๐Ÿšฉ AWSRepostSpaceSupportOperationsPolicy
  3. AWSSSMForSAPServiceLinkedRolePolicy
  4. AWSSecurityHubServiceRolePolicy
  5. AmazonDetectiveInvestigatorAccess
  6. AmazonEKSWorkerNodePolicy
  7. AmazonFSxConsoleFullAccess
  8. AmazonFSxFullAccess
  9. AmazonGuardDutyServiceRolePolicy
  10. AmazonInspector2AgentlessServiceRolePolicy
  11. AmazonPrometheusFullAccess
  12. ๐Ÿšฉ AmazonPrometheusScraperServiceRolePolicy
  13. ๐Ÿšฉ AwsGlueSessionUserRestrictedNotebookPolicy
  14. CloudTrailServiceRolePolicy
  15. CloudWatchLogsFullAccess
  16. CloudWatchLogsReadOnlyAccess
  17. CostOptimizationHubServiceRolePolicy
  18. ElasticLoadBalancingReadOnly
  19. IAMAccessAnalyzerReadOnlyAccess
Weekly diff

๐Ÿค– Powered by MAMIPย - ๐Ÿšฉ Sensitive IAM Actions included

โ˜• CloudFormation resource changes

๐ŸŽฎ Amazon Linux vulnerabilities

This section will show you the latest (Important and Critical) CVEs on Amazon Linux.
  • No CVEs published this week on Amazon Linux OS.

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.