Issue #155

Monday · March 18, 2024

📋 Chef's selections

  1. Tales from the cloud trenches: Using malicious AWS activity to spot phishing campaigns
  2. How we sped up AWS CloudFormation deployments with optimistic stabilization
  3. Application Load Balancer enables configuring HTTP client keepalive duration

🥗 AWS security blogs

🍛 Reddit threads on r/aws

🧁 IAM permission changes

🍪 API changes

🍹 IAM managed policy changes

Managed Policy changed since last week: 9
  1. 🚩 AWSCodePipeline_FullAccess
  2. 🚩 AWSMarketplaceSellerFullAccess
  3. AmazonDataZoneDomainExecutionRolePolicy
  4. 🚩 AmazonDataZoneFullAccess
  5. AmazonDataZoneFullUserAccess
  6. 🚩 AmazonDataZoneRedshiftGlueProvisioningPolicy
  7. 🚩 AmazonLexReplicationPolicy
  8. AmazonTimestreamInfluxDBFullAccess
  9. 🚩 AmazonTimestreamInfluxDBServiceRolePolicy
Weekly diff

🤖 Powered by MAMIP | 🚩 Sensitive IAM Actions included

☕ CloudFormation resource changes

🎮 Amazon Linux vulnerabilities

This section will show you the latest (Important and Critical) CVEs on Amazon Linux.

No CVE this week 🎉

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.