This week's articles
Kubernetes API Server Bypass Risks
#defend, #kubernetes
This page describes the ways in which the security controls built into the Kubernetes API server can be bypassed, so that cluster operators and security architects can ensure that these bypasses are appropriately restricted.
The Complete Guide to AWS KMS
#aws, #explain
An intro guide to AWS Key Management Service (AWS KMS), its different key types, and access (IAM) best practices.
Falco Driverkit with Docker on Debian
#explain, #falco
First of a series of posts where explaining how Falco generates its much needed driver and how to make it available to deployments.
|
|
Tools
matano
Matano is an open source security lake platform for AWS. It lets you ingest petabytes of security and log data from various sources, store and query them in an open Apache Iceberg data lake, and create Python detections as code for realtime alerting.
magic-github-proxy
A stateless GitHub API proxy that allows creation and use of access-limited GitHub API tokens. Basically, it's identity and access management for GitHub API tokens.
aws-security-assessment-solution
An AWS tool to help you create a point in time assessment of your AWS account using Prowler and Scout as well as optional AWS developed ransomware checks.
plumber
plumber is a CLI devtool for inspecting, piping, massaging and redirecting data in message systems like Kafka, RabbitMQ , GCP PubSub and many more.
|
|
From the cloud providers
Transitioning to multiple AWS accounts
Transition from a single-account environment to a multi-account environment, including best practices for migrating accounts, managing users, networking, and security.
|
|
Sponsor CloudSecList
If you want to get your product or job ad in front of thousands of security professionals, ranging from engineers to CISOs and VCs, at companies ranging from small start-ups to Fortune500 and FAANG, you can reach out at 📨 [email protected] 📨
|
|
|
Thanks for reading!
|
If you found this newsletter helpful, I'd really appreciate if you could forward it to your friends and colleagues! 👌 If you have questions, comments, or feedback, let me know on Twitter ( @lancinimarco / @CloudSecList), or at feedback.cloudseclist.com! Thanks, Marco
|
|
|