Issue #15
Monday · April 19, 2021
🥗 AWS security blogs
🍛 Reddit threads on r/aws
- AWS announced new open source projects: OpenSearch and OpenSearch Dashboard as ElasticSearch and Kibana clones
- AWS Identity and Access Management now makes it easier to relate a user's IAM role activity to their corporate identity
- us-east-1 down?
- Have to give a nod to Reachability Analyzer.
- Amazon Managed Service for Grafana (AMG) is now available in preview to all AWS customers.
📌 Newsletters
📌 AWS Security by CloudNews
- AWS Security Hub Automated Response and, Remediation Solution adds support for AWS Foundational Security Best Practices standard
- Amazon Macie adds CloudWatch logging for job status and health monitoring of sensitive data discovery jobs
- AWS Identity and Access Management now makes it easier to relate a user's IAM role activity to their corporate identity
- Amazon GuardDuty Now Available in AWS Asia Pacific (Osaka) Region
📌 AWS IAM Release Notes
📌 Top Links from Security Folks
📌 r/netsec
- Valve Steam through 2021-04-10, when a Source engine game is installed, allows remote authenticated users to execute arbitrary code because of a buffer overflow that occurs for a Steam invite after one click.
- 1-click RCE in Telegram, Nextcloud, VLC, Libre-/OpenOffice, Bitcoin/Dogecoin Wallets, Wireshark and Mumble