Issue #43

Monday · November 01, 2021

πŸ₯— AWS security blogs

  • Forensic investigation environment strategies in the AWS Cloud β€” When a deviation from your secure baseline occurs, it’s crucial to respond and resolve the issue quickly and follow up with a forensic investigation and root cause analysis. Having a preconfigured infrastructure and a practiced plan for using it when there’s a deviation from your baseline will help you to …
  • Migrate and secure your Windows PKI to AWS with AWS CloudHSM β€” AWS CloudHSM provides a cloud-based hardware security module (HSM) that enables you to easily generate and use your own encryption keys in AWS. Using CloudHSM as part of a Microsoft Active Directory Certificate Services (AD CS) public key infrastructure (PKI) fortifies the security of your certificate authority (CA) private key …
  • Three ways to improve your cybersecurity awareness program β€” Raising the bar on cybersecurity starts with education. That’s why we announced in August that Amazon is making its internal Cybersecurity Awareness Training Program available to businesses and individuals for free starting this month. This is the same annual training we provide our employees to help them better understand and …
  • Correlate security findings with AWS Security Hub and Amazon EventBridge β€” In this blog post, we’ll walk you through deploying a solution to correlate specific AWS Security Hub findings from multiple AWS services that are related to a single AWS resource, which indicates an increased possibility that a security incident has happened. AWS Security Hub ingests findings from multiple AWS services, …

πŸ› Reddit threads on r/aws

πŸ“Œ Newsletters

πŸ“Œ AWS Security by CloudNews

πŸ“Œ Top Links from Security Folks

πŸ“Œ r/netsec

πŸ“Œ "AWS Security" on Google News

🧁 IAM permission changes

  • textract: 2 new actions β€” 2 new actions: GetExpenseAnalysis (return information about an expense analysis job), StartExpenseAnalysis (start an asynchronous job to detect instances of invoices or receipts within an image or pdf provided as input)
  • logs: 1 updated action β€” 1 updated action: PutSubscriptionFilter (resources)
  • cloudwatch: 1 new condition | 1 updated condition, 1 updated action β€” 1 new condition: cloudwatch:requestInsightRuleLogGroups (filters actions based on the log groups specified in an insight rule.); 1 updated condition: cloudwatch:AlarmActions (type); 1 updated action: PutInsightRule (conditions)

πŸͺ API changes

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.