Issue #50

Monday · December 20, 2021

πŸ₯— AWS security blogs

  • Continuous runtime security monitoring with AWS Security Hub and Falco β€” Customers want a single and comprehensive view of the security posture of their workloads. Runtime security event monitoring is important to building secure, operationally excellent, and reliable workloads, especially in environments that run containers and container orchestration platforms. In this blog post, we show you how to use services such …
  • Using AWS security services to protect against, detect, and respond to the Log4j vulnerability β€” December 17, 2021: The blog has been updated to include using Athena to query VPC flow logs. December 16, 2021: The Respond section of the post has been updated to include IMDSv2 and container mitigation info. Overview In this post we will provide guidance to help customers who are responding …
  • Open source hotpatch for Apache Log4j vulnerability β€” December 14, 2021:The version 2.15 Log4j was updated to the new version out today. At Amazon Web Services (AWS), security remains our top priority. As we addressed the Apache Log4j vulnerability this weekend, I’m pleased to note that our team created and released a hotpatch as an interim mitigation step. …

πŸ› Reddit threads on r/aws

πŸ“Œ Newsletters

πŸ“Œ Top Links from Security Folks

πŸ“Œ r/netsec

πŸ“Œ r/cloudsecurity

  • Azure CSPM Coding Doubt β€” Hey, my boss told me to start working on the Azure CSPM integration for our product. I don't have a lot of experience with cloud security. I have experience with information security only. Also, did a project on AWS integration. I'm very confused about Azure. I don't really know where …

πŸ“Œ "AWS Security" on Google News

Get every AWS security change,
on a plate every Monday.

6,700+ engineers, builders and CISOs let us diff the AWS changelog every week.