197 followers 0 articles/week
Lightsail object storage concerns - Part 2

This is part two of a two part series about AWS’s new Lightsail object storage. In part 1, I looked at the new Lightsail access key capability. In this second part we’ll look more closely at the buckets created. It was over 7 months ago when I posted part 1, so why the delay? I was waiting for AWS to fix something, and it was low enough risk...

Fri Mar 18, 2022 05:15
Lightsail object storage concerns - Part 1

This is part one of a two part series that will discuss AWS’s new Lightsail object storage. In this first part, we’ll look at the new access key capability and a security issue I discovered that has been fixed. In the second part we’ll look more closely at the buckets created. What is Lightsail? In 2016, AWS released Lightsail as a way of...

Thu Aug 5, 2021 16:39
S3 backups and other strategies for ensuring data durability through ransomware attacks

Ransomware has become a primary concern for infosec. This post will discuss options for ensuring the durability of data stored on S3, through protections in place and backup strategies. The AWS backup service on AWS unfortunately does not backup S3 buckets and a lot of discussions of backups and data durability on AWS do not describe the implementation...

Tue Aug 3, 2021 16:57
AWS security project ideas

I’m excited to announce that I’ve taken a new job with Aurora and am shutting down my consulting business. This post will discuss some project ideas I never got to, but first I want to briefly discuss this move. It’s weird to move on from something I built over the past 3.5 years and that was by all definitions a success. I’ve had dozens of clients...

Wed Feb 17, 2021 06:12
AWS Security Maturity Roadmap 2021

This is the third annual release of my “AWS Security Maturity Roadmap” to give companies a series or actionable steps to improve the security of their AWS environments. Each year I update this with the latest features of AWS, along with improvements based on my discussions with clients, other consultants, and more who have gone through some of these...

Tue Jan 12, 2021 15:27
Opting out of AWS AI data usage

This post will discuss why you should opt out of the AI data usage on AWS, how to do that, and how to confirm you did it correctly. A general rule on AWS is that your data will not leave the region you put it in. AWS customers rely on this for compliance, data sovereignty, and other reasons. Another general rule is that AWS will not access your...

Wed Jan 6, 2021 15:57

Build your own newsfeed

Ready to give it a go?
Start a 14-day trial, no credit card required.

Create account