Generate least-privilege DynamoDB resource policies with k9-cdk

The k9-cdk now supports generating least-privilege resource policies for Amazon DynamoDB tables, indices, and streams. This addition complements the existing S3 and KMS capabilities, bringing the same simplified approach for securing data to DynamoDB resources managed...

k9 now reports entitlements to Amazon Bedrock APIs

k9 Security now reports IAM principals’ access entitlements to the Amazon Bedrock APIs. The Bedrock APIs allow customers to manage generative AI data resources and create AI-enabled services and agents. k9 reports whether IAM principals may administer, change, or read...

k9 Security now simplifies IAM Security for Azure

Manage Azure identity security risks with k9 Security Simplify IAM Security for Azure Now you can quickly identify risks to Microsoft Azure subscriptions from unintended privileged principals and prevent outages caused by expiring credentials with the k9 Security...

How to test a Python app uses an HTTP proxy to connect to AWS

Some organizations require that all outbound application traffic run through an HTTP proxy so that traffic can be inspected and limited to certain allowlisted domains. But how do you test your application to verify your client libraries have all been configured to use...