Issue #170

Monday · August 12, 2024

๐Ÿฅ– Palate Cleanser

Blackhat and Defcon happened. Hope everyone had a good time. I'm sure it was great. I don't have much gossip to share (yet?). Send gossip to gossip@awssecuritydigest.com and I'll give it the appropriate treatment.

One AWS security presentation made noise and leads this week's chef's selections. One event organiser made some horrible career choices that deserve our ire.

Have feedback about AWS Security Digest? Tell us here. This issue is also available to share online.

๐Ÿ“‹ Chef's selections

Bonus: Surprising behaviour in AWS web console session duration by Aidan Steele

๐Ÿฅ— AWS security blogs

๐Ÿ› Reddit threads on r/aws


๐Ÿค– Dessert

Every machine-tracked change this week. Nobody else assembles this.

๐Ÿง IAM permission changes

๐Ÿช API changes

๐Ÿน IAM managed policy changes

โ˜• CloudFormation resource changes

    No resource updates this week.

๐ŸŽฎ Amazon Linux vulnerabilities

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.