Issue #157

Monday · May 20, 2024

๐Ÿ“‹ Chef's selections

  1. IMDSv2 enforcement: coming to a region near you!
  2. AWS Bulletin regardingย CVE-2024-3094 (+ย Interestingย blogpost)
  3. Amazon GuardDuty EC2 Runtime Monitoring is now generally available

๐Ÿฅ— AWS security blogs

๐Ÿ› Reddit threads on r/aws

๐Ÿง IAM permission changes

๐Ÿช API changes

๐Ÿน IAM managed policy changes

Managed Policy changed since last week: 12
  1. ๐Ÿšฉ AWSCleanRoomsFullAccess
  2. AWSEC2VssSnapshotPolicy
  3. ๐Ÿšฉ AWSGlueDataBrewServiceRole
  4. ๐Ÿšฉ AWSLakeFormationCrossAccountManager
  5. ๐Ÿšฉ AWSLakeFormationDataAdmin
  6. AWSMSKReplicatorExecutionRole
  7. AWSQuickSightAssetBundleExportPolicy
  8. ๐Ÿšฉ AWSQuickSightAssetBundleImportPolicy
  9. ๐Ÿšฉ AWSRefactoringToolkitFullAccess
  10. ๐Ÿšฉ AWSResilienceHubAsssessmentExecutionPolicy
  11. ๐Ÿšฉ AWSSupportServiceRolePolicy
  12. AmazonGuardDutyServiceRolePolicy
Weekly diff

๐Ÿค– Powered by MAMIPย | ๐Ÿšฉ Sensitive IAM Actions included

โ˜• CloudFormation resource changes

๐ŸŽฎ Amazon Linux vulnerabilities

This section will show you the latest (Important and Critical) CVEs on Amazon Linux.

No CVE this weekย ๐ŸŽ‰

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.