AWS breaking changes coming up:
April 30: Lambda ARNs are changing in IAM policies when versions or aliases are referenced: https://t.co/9C1n0L60hY
May 18: GovCloud RDS TLS certs are changing. https://t.co/4qjuQqjOnH
New documents for the Okta breach: I have obtained copies of the Mandiant report detailing the embarrassing Sitel/SYKES breach timeline and the methodology of the LAPSUS$ group. 1/N https://t.co/z05uQYclg9
[status] Investigating: We've noticed that some Operations are failing due to Route53 record changes not propagating within the 10 minute time limit allowed by our platform.
In order to prevent Apps and Databases DNS records from rea… https://t.co/XERisVyQWt
A student asked me yesterday why orgs demand estimates of impossible-to-estimate activities. Best answer I could come up with was that an estimate allowed them to deflect blame. Someone yells at them for going too slow, they say, "Yell at them. They estimated it."
🧵1/ This is an analysis of all accounts using the terms '#Ukraine' and 'bio labs'. I wanted to see which accounts were pushing this narrative the most, & which were the most influential. This is an analysis of around 20k Twitter interactions from approx 17k unique accounts
Announcing #AWS#CloudFormation Hooks! Now you can run custom logic before CloudFormation creates, updates, or deletes a resource in your AWS accounts. Learn more here: https://t.co/5hRhLQHYX0
New blag post I've been sitting on for a little while: some AWS availability zones are older than others, and not all of them support Nitro or Graviton2! https://t.co/ajck4Vp68g
A channel run by Belarusian rail workers says that 33 military echelons have arrived in Belarus from Russia with an average of 50 cars per train over the past 7 days compared to 29 over an entire month for the Zapad 2021 exercise. They claim 200 echelons are scheduled to arrive.
@0xdabbad00@orcasec (2/2) The Glue vuln, allowed us to get an AdministratorAccess on a glue service account. We were able to demonstrate AssumeRole to victim accounts, which is what you meant.
https://t.co/oBnbd9qg6R
😱😱😱 This is worse than ChaosDB for AWS. @orcasec gained access to all AWS resources in all AWS accounts! They accessed the AWS internal CloudFormation service.
https://t.co/2oCCRvo389
Separately, they did something similar for Glue.
https://t.co/BDFMLQI06B