AWS

Amazon Quick authorization bypass let users reach blocked AI chat agents

Amazon Quick authorization bypass let users reach blocked AI chat agents 2026-05-12 at 20:12 By Mirko Zorz Enterprises running Amazon Quick, the AWS business intelligence and agentic AI service, rely on a feature called custom permissions to restrict who inside an account can use AI chat agents. Fog Security founder Jason Kao discovered that those […]

Amazon Quick authorization bypass let users reach blocked AI chat agents Read More »

25 open-source cybersecurity tools that don’t care about your budget

25 open-source cybersecurity tools that don’t care about your budget 2026-04-27 at 10:30 By Anamarija Pogorelec Regardless of the operating system you use, managing secrets, apps, cloud, compliance, and security operations can be overwhelming. The free, open-source tools presented in this article can help you detect threats, increase visibility, enforce controls, and investigate and respond […]

25 open-source cybersecurity tools that don’t care about your budget Read More »

AWS, Wasabi, Cloudflare, and Backblaze go head-to-head in new cloud storage test

AWS, Wasabi, Cloudflare, and Backblaze go head-to-head in new cloud storage test 2026-04-03 at 01:25 By Anamarija Pogorelec Cloud storage buyers rarely get vendor-provided performance data that includes the vendor’s own weak spots. Backblaze’s Q1 2026 Performance Stats report, attempts to do exactly that, sharing benchmark results for Backblaze B2, AWS S3, Cloudflare R2, and […]

AWS, Wasabi, Cloudflare, and Backblaze go head-to-head in new cloud storage test Read More »

Amazon sends AI agents into pen testing and DevOps

Amazon sends AI agents into pen testing and DevOps 2026-03-31 at 20:31 By Sinisa Markovic Amazon’s latest AI capabilities bring on-demand penetration testing through the AWS Security Agent, alongside the AWS DevOps Agent. “These agents are changing the way we secure and operate software. AWS Security Agent compresses penetration testing timelines from 2-6 weeks to […]

Amazon sends AI agents into pen testing and DevOps Read More »

TeamPCP Moves From OSS to AWS Environments

TeamPCP Moves From OSS to AWS Environments 2026-03-31 at 17:42 By Ionut Arghire After validating stolen credentials using TruffleHog, the hacking group started AWS services enumeration and lateral movement activities. The post TeamPCP Moves From OSS to AWS Environments appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

TeamPCP Moves From OSS to AWS Environments Read More »

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131)

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) 2026-03-20 at 15:21 By Zeljka Zorz A critical vulnerability (CVE-2026-20131) in Cisco Secure Firewall Management Center (FMC) that Cisco disclosed and patched in early March 2026 has been exploited as a zero-day by the Interlock ransomware gang, Amazon CISO and VP of Security Engineering […]

Cisco FMC flaw was exploited by Interlock weeks before patch (CVE-2026-20131) Read More »

Major tech companies invest $12.5 million in open source security

Major tech companies invest $12.5 million in open source security 2026-03-18 at 11:31 By Sinisa Markovic The Linux Foundation announced $12.5 million in grant funding backed by Anthropic, AWS, GitHub, Google, Google DeepMind, Microsoft, and OpenAI to strengthen open source security. The funding will be directed through the foundation’s Alpha-Omega Project and the Open Source […]

Major tech companies invest $12.5 million in open source security Read More »

Cloud-audit: Fast, open-source AWS security scanner

Cloud-audit: Fast, open-source AWS security scanner 2026-03-11 at 09:21 By Mirko Zorz Running AWS security audits without a dedicated security team typically means choosing between enterprise platforms with per-check billing and generic open-source scanners that produce findings with no remediation guidance. Cloud-audit, a Python CLI tool published on GitHub by Mariusz Gebala, takes a narrower […]

Cloud-audit: Fast, open-source AWS security scanner Read More »

Iranian Strikes on Amazon Data Centers Highlight Industry’s Vulnerability to Physical Disasters

Iranian Strikes on Amazon Data Centers Highlight Industry’s Vulnerability to Physical Disasters 2026-03-03 at 22:09 By Associated Press Two AWS data centers in the United Arab Emirates were “directly struck” and another facility in Bahrain was also damaged after a drone landed nearby. The post Iranian Strikes on Amazon Data Centers Highlight Industry’s Vulnerability to […]

Iranian Strikes on Amazon Data Centers Highlight Industry’s Vulnerability to Physical Disasters Read More »

AWS Expands Security Hub Into a Cross-Domain Security Platform

AWS Expands Security Hub Into a Cross-Domain Security Platform 2026-03-02 at 15:09 By Kevin Townsend The AWS Security Hub Extended plan aims to reduce security tool sprawl by correlating findings across multiple security domains. The post AWS Expands Security Hub Into a Cross-Domain Security Platform appeared first on SecurityWeek. This article is an excerpt from […]

AWS Expands Security Hub Into a Cross-Domain Security Platform Read More »

AWS Security Hub Extended brings enterprise security under one roof

AWS Security Hub Extended brings enterprise security under one roof 2026-02-26 at 23:18 By Anamarija Pogorelec AWS Security Hub Extended is a plan within Security Hub that simplifies how customers procure, deploy, and integrate a full-stack enterprise security solution across endpoint, identity, email, network, data, browser, cloud, AI, and security operations. The plan allows customers […]

AWS Security Hub Extended brings enterprise security under one roof Read More »

AWS adds IPv6 support to IAM Identity Center through dual-stack endpoints

AWS adds IPv6 support to IAM Identity Center through dual-stack endpoints 2026-01-27 at 15:49 By Anamarija Pogorelec Amazon Web Services has added IPv6 support to IAM Identity Center through new dual-stack endpoints. The update allows identity services to operate over IPv6 networks while continuing to support IPv4. The change applies to access portals, managed applications, […]

AWS adds IPv6 support to IAM Identity Center through dual-stack endpoints Read More »

AWS releases updated PCI PIN compliance report for payment cryptography

AWS releases updated PCI PIN compliance report for payment cryptography 2026-01-26 at 07:05 By Anamarija Pogorelec Amazon Web Services has published an updated Payment Card Industry Personal Identification Number (PCI PIN) compliance package for its AWS Payment Cryptography service, confirming a recent third-party audit of the platform. The report package is now accessible through AWS’s […]

AWS releases updated PCI PIN compliance report for payment cryptography Read More »

AWS European Sovereign Cloud puts data, operations, and oversight inside the EU

AWS European Sovereign Cloud puts data, operations, and oversight inside the EU 2026-01-15 at 13:54 By Sinisa Markovic Amazon has made the AWS European Sovereign Cloud generally available to customers across the European Union, backed by a €7.8 billion investment. According to AWS, the funding will support infrastructure buildout, staffing, and long-term operations, and is […]

AWS European Sovereign Cloud puts data, operations, and oversight inside the EU Read More »

re:Invent 2025: AWS and Security Vendors Unveil New Products and Capabilities 

re:Invent 2025: AWS and Security Vendors Unveil New Products and Capabilities  2025-12-03 at 14:35 By Eduard Kovacs AWS and cybersecurity vendors have made several announcements at the cloud giant’s re:Invent 2025 event.  The post re:Invent 2025: AWS and Security Vendors Unveil New Products and Capabilities  appeared first on SecurityWeek. This article is an excerpt from […]

re:Invent 2025: AWS and Security Vendors Unveil New Products and Capabilities  Read More »

Rethinking AI security architectures beyond Earth

Rethinking AI security architectures beyond Earth 2025-10-08 at 09:39 By Mirko Zorz If you think managing cloud security is complex, try doing it across hundreds of satellites orbiting the planet. Each one is a moving endpoint that must stay secure while communicating through long, delay-prone links. A new study explores how AI could automate security […]

Rethinking AI security architectures beyond Earth Read More »

AWS Trusted Advisor Tricked Into Showing Unprotected S3 Buckets as Secure

AWS Trusted Advisor Tricked Into Showing Unprotected S3 Buckets as Secure 2025-08-22 at 12:22 By Eduard Kovacs AWS has addressed a vulnerability that could have been leveraged to bypass Trusted Advisor’s S3 bucket permissions check. The post AWS Trusted Advisor Tricked Into Showing Unprotected S3 Buckets as Secure appeared first on SecurityWeek. This article is […]

AWS Trusted Advisor Tricked Into Showing Unprotected S3 Buckets as Secure Read More »

AWS Trusted Advisor flaw allowed public S3 buckets to go unflagged

AWS Trusted Advisor flaw allowed public S3 buckets to go unflagged 2025-08-21 at 14:38 By Zeljka Zorz AWS’s Trusted Advisor tool, which is supposed to warn customers if their (cloud) S3 storage buckets are publicly exposed, could be “tricked” into reporting them as not exposed when they actually are, Fog Security researchers have found. S3 […]

AWS Trusted Advisor flaw allowed public S3 buckets to go unflagged Read More »

As AI grows smarter, your identity security must too

As AI grows smarter, your identity security must too 2025-08-19 at 08:35 By Help Net Security AI is no longer on the horizon, it’s already transforming how organizations operate. In just a few years, we’ve gone from isolated pilots to enterprise-wide adoption. According to a recent SailPoint survey, 82% of companies are running AI agents […]

As AI grows smarter, your identity security must too Read More »

Scroll to Top