Cyber Defense Advisors

News

  • by
  • March 26, 2023

Pasting Code in AWS CloudShell from Mac — Not Pretty

If anyone out there working on AWS CloudShell happens to see this, I’d consider this a bug because it makes CloudShell pretty much… Continue reading on Bugs That Bite »

Cyber News, Cyber Threat Trends
  • by
  • March 26, 2023

AWS Organizations SCPs — Redundant and Extraneous Policies

The design of AWS Organizations is such that accounts and OUs end up having repetitive and redundant FullAWSAccess policies. Continue reading on Bugs That Bite »

Cyber News, Cyber Threat Trends
  • by
  • March 26, 2023

Bug in AWS CloudShell

I have a particular file that has a portion of the code that looks like this when I open it up: Continue reading on Bugs That Bite »

Cyber News, Cyber Threat Trends
  • by
  • March 26, 2023

Resource handler returned message: “The provided policy document does not meet the requirements of…

Error message for AWS CloudFormation with a Service Control Policy is *Not Helpful* (or any IAM-like policy) Continue reading on Bugs That Bite »

Cyber News, Cyber Threat Trends

DevSecOps puts security in the software cycle

Addressing cybersecurity can be a challenge when the focus is on speed in software development and production life cycles. The post DevSecOps puts security in the software cycle appeared first on TechRepublic.

Cyber News, Cyber Threat Trends

Exploding USB Sticks

In case you don’t have enough to worry about, people are hiding explosives—actual ones—in USB sticks: In the port city of Guayaquil, journalist Lenin Artieda of the Ecuavisa private TV station received an envelope containing a pen drive which exploded when he inserted it into a computer, his employer said. Artieda sustained slight injuries to […]

Cyber News, Cyber Threat Trends
  • by
  • March 24, 2023

GitHub Swiftly Replaces Exposed RSA SSH Key to Protect Git Operations

Cloud-based repository hosting service GitHub said it took the step of replacing its RSA SSH host key used to secure Git operations “out of an abundance of caution” after it was briefly exposed in a public repository. The activity, which was carried out at 05:00 UTC on March 24, 2023, is said to have been […]

Cyber News, Cyber Threat Trends
  • by
  • March 24, 2023

THN Webinar: Inside the High Risk of 3rd-Party SaaS Apps

Any app that can improve business operations is quickly added to the SaaS stack. However, employees don’t realize that this SaaS-to-SaaS connectivity, which typically takes place outside the view of the security team, significantly increases risk. Whether employees connect through Microsoft 365, Google Workspace, Slack, Salesforce, or any other app, security teams have no way […]

Cyber News, Cyber Threat Trends

Exploding USB Sticks

In case you don’t have enough to worry about, people are hiding explosives—actual ones—in USB sticks: In the port city of Guayaquil, journalist Lenin Artieda of the Ecuavisa private TV station received an envelope containing a pen drive which exploded when he inserted it into a computer, his employer said. Artieda sustained slight injuries to […]

Cyber News, Cyber Threat Trends