TGViewer
Channel Public Channel
CloudSec Wine

CloudSec Wine

@cloud_sec

All about cloud security

Contacts:
@AMark0f
@dvyakimov

About DevSecOps:
@sec_devops
Subscribers
2.27K
Photos
1.1K
Videos
0
Links
1.4K

Showing posts older than #718 · Back to latest

Older Posts 20 shown
Post #716 770
🔷 5 Tips to prevent or limit the impact of an incident in Azure

Five low-cost and easy to implement measures with high-impact to prevent or limit the impact of an incident in Azure: setup budget quotas, restrict app registration, prevent subscriptions from entering your tenant, ingest audit logging, and limit external collaboration.

https://invictus-ir.medium.com/5-tips-to-prevent-or-limit-the-impact-of-an-incident-in-azure-e9f664fe0100

(Use VPN to open from Russia)

#azure
  • 👍 3
  • ❤ 1
  • 🔥 1
Post #710 1.21K
🔶 Shipping RDS IAM Authentication (with a bastion host & SSM)

A basic guide to getting RDS IAM Authentication set up when you're using a Private Endpoint.

https://ramimac.me/rds-iam-auth

#aws
  • 👍 3
  • 🔥 1
  • 😱 1
Post #709 921
🔶 Risk in AWS SSM Port Forwarding

A surprising AWS Systems Manager Session Manager (SSM) default that can introduce risk, especially for customers using SSM's Port Forwarding features.

https://ramimac.me/ssm-iam

#aws
  • 👍 4
  • 🔥 1
  • 👏 1
Post #708 903
🔶 Pivoting Clouds in AWS Organizations: Examining AWS Security Features and Tools for Enumeration

The architecture and considerable number of enabled/delegated service possibilities in AWS Organizations presents a serious vector for lateral movement within corporate environments. This could easily turn a single AWS account takeover into a multiple account takeover.

https://www.netspi.com/blog/technical/cloud-penetration-testing/pivoting-clouds-aws-organizations-part-2/

#aws
  • 👍 3
  • 🔥 1
  • 👏 1
Post #706 707
🔶 Terraform best practices for reliability at any scale

At scale, many Terraform state files are better than one. But how do you draw the boundaries and decide which resources belong in which state files? What are the best practices for organizing Terraform state files to maximize reliability, minimize the blast-radius of changes, and align with the design of cloud providers?

https://substrate.tools/blog/terraform-best-practices-for-reliability-at-any-scale

#aws
  • 👍 3
  • 👎 1
  • 🔥 1
  • 😱 1
Post #697 601
🔷 Unauthorized Access to Cross-Tenant Applications in Microsoft Power Platform

A researcher at Tenable has discovered an issue that enables limited, unauthorized access to cross-tenant applications and sensitive data (including but not limited to authentication secrets).

https://www.tenable.com/security/research/tra-2023-25

(Use VPN to open from Russia)

#azure
  • ❤ 1
  • 👍 1
  • 🔥 1
Older posts →
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →