Issue #234

Monday · November 03, 2025

๐Ÿฅ– Palate Cleanser

When AWS isn't down, Azure must be? It's been a bad couple of weeks for the big cloud service providers. But as Roman Siewko points out about typical AWS availability, "as of October 25, 2025, the rolling figures are 99.84% (1-year) and 99.95% (5-year)."

Unfortunately, there were some reports that Lambda costs in us-east-1 spiked on outage day, so it might be worth checking your bill and having a chat with your AWS rep.

In addition to ๐Ÿ”ฅ chef's selections this week, there's also a special bonus: all the presentations from the 2025 SANS CloudSecNext Summit are live on YouTube. Most of them are cloud-agnostic or multi-cloud.

Have feedback about AWS Security Digest? Tell us here. This issue is also available to share online.

๐Ÿ“‹ Chef's selections

๐Ÿฅ— AWS security blogs

๐Ÿ› Reddit threads on r/aws


๐Ÿค– Dessert

Every machine-tracked change this week. Nobody else assembles this.

๐Ÿง IAM permission changes

๐Ÿช API changes

๐Ÿน IAM managed policy changes

โ˜• CloudFormation resource changes

๐ŸŽฎ Amazon Linux vulnerabilities

๐Ÿ“บ AWS security bulletins

    No bulletins this week.

๐Ÿšฌ Security documentation changes

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.