Issue #162

Monday · June 17, 2024

📋 Chef's selections

  1. Apple alerted Amazon about a potential cloud security risk, prompting a change in AWS's data-deletion process

    Behind a paywall but a fascinating read about account deletion failings and improvements.

  2. Encryption At Rest: Whose Threat Model Is It Anyway?

    It's important that we keep revisiting this topic because it's so misunderstood.

Bonus: Issue with AWS Deployment Framework - CVE-2024-37293

🥗 AWS security blogs

🍛 Reddit threads on r/aws

🧁 IAM permission changes

🍪 API changes

☕ CloudFormation resource changes

New resources:

Updated resources:

🎮 Amazon Linux vulnerabilities

No CVEs this week 🎉

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.