Create AWS access keys that can be placed in various places to tempt bad guys. If used, you will be notified within ~4 minutes. You can then investigate that asset to determine if it may have been compromised.
https://t.co/or5vtnpbWt
🍯 aws-mine: An open source AWS honey token manager
Catch attackers & compromised assets with decoy AWS access keys
Notifies users via Amazon SNS within ~4 minutes when keys are used
By @StevenSmiley
https://t.co/ShKvtQBJXk
#cybersecurity
@sharkmode@wiz_io@nirohfeld@shirtamari Can you think of any other endpoint types that would allow you to append an arbitrary string at the end and still receive the notification?
@hashishrajan@CloudChallenges I have interviewed and hired people who did this and I’d do it again, it gives them something specific to talk about and show their enthusiasm. Better than getting a cert without ever actually building anything which seems common.
This was a massive undertaking but I'm so excited to share our findings with the #AWS cloud #security community. Special thanks to @christophetd for the great work here.
Good data driven analysis from Datadog on AWS security. No surprises for those of us in cloud security but we need to get better at closing these gaps.
We are proud to release Datadog's first security study: "The State of AWS Security - A Look Into Real-World AWS Environments"
Read the report to learn about key mechanisms to secure AWS environments and how organizations worldwide are implementing them. https://t.co/xBiNKgdizg
AWS announces updated Support Plans Console with new IAM controls
AWS Support continues to provide a mix of tools, technology, people, and programs to help you optimize performance, lower costs, and innovate faster. Today, the new AWS Support Plans... https://t.co/go1Fgetw6y
New Security, Identity & Compliance post by Faraz Angabini:
Extend AWS IAM roles to workloads outside of AWS with IAM Roles Anywhere
https://t.co/BubMI20X99
If the goal of incident analysis is blame (vs. understanding why an event happened so recurrence can be prevented) then analysis will stop as soon as the first blamable cause is found as opposed to the true root cause.
Hence, blameless postmortems are crucial.