Episode Summary

Last week in security news: The Center for Internet Security just released an update to the AWS version of their security benchmarks, Introducing message data protection for Amazon SNS, a handy guide on the ordered steps to take to avoid CloudFront or DNS domain takeovers on AWS, and more!

Episode Show Notes & Transcript

Links:
  • Nick Frichette wrote an incredibly handy guide on the ordered steps to take to avoid CloudFront or DNS domain takeovers on AWS.
  • This handy walkthrough talks about how to configure something that shrieks its head off whenever someone logs into AWS via the root account.
  • The Center for Internet Security just released an update to the AWS version of their security benchmarks, and this approachable post goes through what's new.
  • Introducing message data protection for Amazon SNS - This is a bit hard to wrap my head around--then Scott Piper nailed it with "it's Macie for SNS and now I'm wondering what the point of me even is. 
  • I've talked about Parliament before--it's an AWS IAM linting library. Version 1.6.0 just dropped.
  • I'll be in the DC area next week; come by Highline at 7PM and let me buy you a drink / swap stories if you're around.

Get the Newsletter

Reach over 30,000 discerning engineers, managers, enthusiasts who actually care about the state of Amazon’s cloud ecosystems.

"*" indicates required fields

This field is for validation purposes and should be left unchanged.

Gnarly cloud cost questions?

Good news: we’ve got answers (and coffee). Meet the Duckbill team for personalized advice on your thorniest AWS challenges.