Issue #148
Monday · January 29, 2024
๐ฅ Palate Cleanser
Hey folks,I hope you're doing great! Enjoy this week's flavor of AWS insights.
For the upcoming issues, I'd love to feature your secret sauce tips. Got any cool tricks, security advice, daily AWS habits, or handy commands?
Share them with us using this form to be highlighted in one of our next issues.
Your expertise can help make our AWS community stronger!
Bon appรฉtit! ๐ฝ๏ธ
Victor
๐ Chef's selections
๐ฅ AWS security blogs
- 2023 PiTuKri ISAE 3000 Type II attestation report available with 171 services in scope
- How to build a unified authorization layer for identity providers with Amazon Verified Permissions
- AWS completes the first cloud audit by the Ingelheim Kreis Initiative Joint Audits group for the pharmaceutical and life sciences sector
- Latest PCI DSS v4.0 compliance package available in AWS Artifact
๐ Reddit threads on r/aws
Security flair only.- 2FA on Amazon Workspaces...how to?
- My Yuibikey is still functional but AWS stopped recognizing it
- Indbound Rules Security Group Question
- Do Workspaces and Windows EC2s need Windows LAPS?
- Deploying Prometheus on aws
- Guardduty Findings for Terminated EC2 Instances
- Get notifications from AWS ECR Inpsector findings
- EC2 Privilege Escalation Through User Data
๐ง IAM permission changes
๐ช API changes
๐น IAM managed policy changes
Managed Policy changed since last week: 14- AWSFaultInjectionSimulatorECSAccess
- AWSFaultInjectionSimulatorNetworkAccess
- AccessAnalyzerServiceRolePolicy
- AmazonECSInfrastructureRolePolicyForServiceConnectTransportLayerSecurity
- AmazonEMRServerlessServiceRolePolicy
- ๐ฉ AmazonGuardDutyMalwareProtectionServiceRolePolicy
- AmazonInspector2ManagedCisPolicy
- ๐ฉ AmazonInspector2ServiceRolePolicy
- AmazonRDSServiceRolePolicy
- ๐ฉ AmazonSageMakerCanvasFullAccess
- ๐ฉ AmazonSecurityLakeMetastoreManager
- ๐ฉ NeptuneFullAccess
- ๐ฉ NeptuneReadOnlyAccess
- ๐ฉ ROSASRESupportPolicy
๐ค Powered by MAMIPย | ๐ฉ Sensitive IAM Actions included
โ CloudFormation resource changes
๐ฎ Amazon Linux vulnerabilities
This section will show you the latest (Important and Critical) CVEs on Amazon Linux.No CVE this week