https://www.europesays.com/uk/6968/ QCon London: Mistakes People Make Building SaaS Software #Arts #ArtsAndDesign #AutomatedDeployment #AWS #Culture&Methods #Design #Entertainment #QConLondon2025 #QconSaasSoftwareMistakes #SaaS #UK #UnitedKingdom
Yesterday (Wed 9 Apr 2025) the temperature ranged from -2.4 to 10.4°C and there was no rain. The wind gusted up to 21mph. Sunrise was at 06:19 hrs and sunset at 20:02 hrs.
#aws #weatherstation #weather
@Erklaerbaer @kuketzblog Danke für den Artikel, dieser fasst die Herausforderungen im #SovereignCloud Bereich wirklich gut und belegt zusammen. #AWS will bis Ende 2025 eine vollständig autonome Region in Deutschland anbieten. Ich bin gespannt auf das Ergebnis, ist nicht der erste Hyperscaler der so etwas in DE versucht. Die Service-Auswahl sieht schon mal gut aus: https://aws.amazon.com/blogs/security/announcing-initial-services-available-in-the-aws-european-sovereign-cloud-backed-by-the-full-power-of-aws/
Besser gleich zu Threema!
Der Traffic von #Signal geht über die US Clouds v. #Google, #Amazon #AWS #Microsoft #Azure & #Cloudflare = alles absolute No-Go´s
Und US Dienste können über den US CloudAct direkt darauf zugreifen!
de.wikipedia.org/wiki/CLOUD_Act
#SignalApp ist nicht anonym = #Threema ja
CLOUD Act – Wikipedia
#Development
EC2 reserved instances’ silent exit · The impact on Amazon Elastic Compute Cloud users https://ilo.im/16383s
_____
#Amazon #AWS #EC2 #Cloud #Pricing #Application #Website #Hosting #WebDev #Backend
AWS Systems Manager Plugin Vulnerability Let Attackers Execute Arbitrary Code https://cybersecuritynews.com/aws-systems-manager-plugin-vulnerability/ #CyberSecurityNews #cybersecuritynews #CyberSecurity #Vulnerability #cybersecurity #vulnerability #AWS
Joke aside, what kind of guardrails are you using to prevent Denial of Wallet (DoW) and lack of visibility on billed cloud assets?
Yesterday (Tue 8 Apr 2025) the temperature ranged from -2.8 to 16.9°C and there was no rain. The wind gusted up to 14mph. Sunrise was at 06:22 hrs and sunset at 20:00 hrs.
#aws #weatherstation #weather
Nach langer Suche habe ich endlich S3 cloudstorage Client Software gefunden, die macht, was ich brauche.
Für Linux ist es #rclone mit dem rclone browser und für grapheneOS ist es #exfilac.
Hauptproblem mit anderer Software war die Konfiguration des Zugriffs auf alternative storage Anbieter (statt #AWS). Bei den beiden Tools funktioniert es. Für Linux würde ich mir wünschen, daß #beyondcompare endlich alternative S3 storage Anbieter unterstützt
If you care about #AWS, this from @Quinnypig is a big deal: https://www.duckbillgroup.com/blog/ec2-reserved-instances-are-being-deprecated/
Tl;dr: Reserved Instances are being quietly deprecated .
Whoa, just caught wind of this nasty Amazon EC2 SSM Agent vulnerability... seriously concerning stuff! We're talking Privilege Escalation and even Remote Code Execution just by manipulating Plugin IDs? Sounds like a *major* headache for admins.
You know how the SSM Agent is pretty much the command center for your EC2 instances? Well, if *that* gets compromised, it's basically game over. Turns out, the issue stems from faulty validation of those Plugin IDs – a classic vulnerability pattern, really. Attackers can actually manipulate paths using '../', something we pentesters unfortunately see pop up more often than you'd think.
It's the kind of sneaky flaw that automated vulnerability scanners frequently miss, which really highlights why manual testing is still invaluable!
So, the bottom line? Updating to version **3.3.1957.0** isn't just recommended, it's pretty much essential right now. Also, definitely take a good look through your SSM docs for any fishy-looking Plugin IDs, just to be safe.
Speaking of keeping things locked down, what are your go-to tools or strategies for hardening your AWS environment? Always curious to hear what others are doing!
Documents revealing personal data were exposed. This was reported to the Finnish entity, but I never received a response from them.
As a result, I had to contact the National Cyber Security Centre of Finland (NCSC-FI) twice to get them to close the case.
Es ist schon bezeichnend, die #AWS Kostenvorschau ist jedes mal überrascht, dass Steuern anfallen.
Besser gleich zu Threema! Der Traffic von #Signal geht über die US Clouds v. #Google, #Amazon #AWS #Microsoft #Azure & #Cloudflare = alles absolute No-Go´s Und US Dienste können über den US CloudAct direkt darauf zugreifen! de.wikipedia.org/wiki/CLOUD_Act
Finland: 105,000 Satula.com Records Exposed in Unsecured AWS.
Yesterday (Mon 7 Apr 2025) the temperature ranged from -3.3 to 16.3°C and there was no rain. The wind gusted up to 10mph. Sunrise was at 06:24 hrs and sunset at 19:58 hrs.
#aws #weatherstation #weather
TIL
aws s3control
NAME
s3control -
DESCRIPTION
Amazon Web Services S3 Control provides access to Amazon S3 control plane actions.
https://awscli.amazonaws.com/v2/documentation/api/latest/reference/s3control/index.html