Amazon S3 is changing the handling of the root identity in bucket policy on October 20, 2023. AWS is known for security and backwards compatibility, so what’s the deal? AWS announced this change via email in February with follow-up to affected accounts in September....
k9 Security now analyzes access to Elastic File System APIs and file systems
Now you can analyze IAM access to Amazon Elastic File System (EFS) APIs and file systems with k9 Security. Elastic File System is a Serverless, fully elastic block file storage that automatically grows and shrinks as you add and remove files with no need for management...
Why are good AWS security policies so difficult?
Creating good AWS security policies is difficult for two reasons. First, the powerful AWS security model is complex and difficult to understand. Second, application deployments are changing and growing rapidly. Why is AWS IAM so @!#^$ hard? One of our favorite...
First Look: Automate Least Privilege Access to S3 Bucket
k9 Security is happy to share a new Terraform module to help you protect your data in AWS S3 and go fast, safely. The tf_s3_bucket Terraform module creates an AWS S3 bucket with safe defaults and a least privilege bucket policy built on the k9 access capability model....
