TGViewer
CloudSec Wine CloudSec Wine @cloud_sec · 2.27K subscribers
Post #740 699
🔶 5 things you may not know about AWS IAM

SCPs are not inherited like you would expect them to be, resource policies can give permissions by themselves, NotPrincipal evaluation may not do what you expect, a permission can be granted by a combination of statements, KMS grants are like detached resource policy statements.

https://blog.revolve.team/2023/09/21/5-things-about-aws-iam/

#aws
  • 👍 3
  • 🔥 2
  • ❤ 1
More from @cloud_sec
  1. Oct 7, 2026👩‍💻 Storm-3168: Agentic-driven cloud attacks using compromised service principals Storm-…
  2. Oct 6, 2026🤖 Securing the software factory at machine speed GitLab's CISO argues that agentic AI dev…
  3. Oct 5, 2026🤖 Throw Away the Playbook: Security in the AI-Native SDLC We, as an industry, should have…
  4. Oct 2, 2026🔴 Strengthen your CI/CD pipeline with new Secure Source Manager capabilities Google Cloud…
  5. Oct 1, 2026🔶 Exploring the new AWS Sign Up experience This post will explore what this new concept d…
  6. Sep 30, 2026🤖 Hacking OpenAI Researchers chained a libheif heap buffer overflow (via Discourse/ImageM…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →