
About this episode
Last week in security news: Corey reported an over-scoped role to AWS security, The bad LastPass breach got even worse, How to enforce DNS name constraints in AWS Private CA, and more!
Links:
- I reported an over-scoped role to AWS security; the response from the SageMaker Canvas team was that it's working as intended.
- The bad LastPass breach that continues to get worse once again somehow got worse.
- Microsoft has published a rather thorough postmortem about how their signing key was leaked.
- A security newsletter features a scam that I reported via Twitter.
- Google has gone from paragon of security to apparently now sharing aspects of your browsing history with websites in Chrome,
- Establishing a data perimeter on AWS: Allow access to company data only from expected networks
- How to enforce DNS name constraints in AWS Private CA
- Tool of the week: ThreatMapper hunts for threats in your production platforms, and ranks these threats based on their risk-of-exploit.
Get every episode summarized
Each time AWS Morning Brief publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from AWS Morning Brief

Happy 20th Birthday EC2, You Beautiful Disaster
AWS Morning Brief
Aug 31, 20265:03pending

London Gets an AZ, You Get an Outage
AWS Morning Brief
Aug 24, 20266:02pending

The Week AWS Explained Its Own Error Messages
AWS Morning Brief
Aug 17, 20265:51pending

DynamoDB Does Vectors Now, Because Of Course It Does
AWS Morning Brief
Aug 10, 20268:53pending