Issue #156
Monday · March 25, 2024
๐ Chef's selections
๐ฅ AWS security blogs
๐ Reddit threads on r/aws
- DynamoDB Adds Support for Resource-Based Policies
- WAF with externally hosted application and no redirect?
- Key rotation for non-aws service (Snowflake) managed by KMS
- Using AWS Cognito as authentication provider with fully custom UI components in react-native
- Whatโs the most secure way to store the private keys of the crypto wallets that we generate?
- requesting sanity check on IAM policy
- Hub and Spoke Model - Inspection Between Subnets
- ElastiCache Redis - why would someone set a second password?
- Conformance pack for ASAE 3150 or ISAE 3150
- Security Hub Central Configuration
- Unable to connect to any new databases
- Bypassing Amazon S3 Block Public Access and Creating a Public S3 Bucket
๐ง IAM permission changes
๐ช API changes
๐น IAM managed policy changes
Managed Policy changed since last week: 6- ๐ฉ AWSCleanRoomsFullAccess
- ๐ฉ AWSGlueDataBrewServiceRole
- ๐ฉ AWSMarketplaceSellerFullAccess
- ๐ฉ AmazonDynamoDBReadOnlyAccess
- ๐ฉ AmazonRedshiftServiceLinkedRolePolicy
- AmazonTimestreamInfluxDBFullAccess
๐ค Powered by MAMIPย | ๐ฉ Sensitive IAM Actions included
โ CloudFormation resource changes
๐ฎ Amazon Linux vulnerabilities
This section will show you the latest (Important and Critical) CVEs on Amazon Linux.No CVE this weekย ๐