
0:00-2:54
Streams straight from the publisher. podnod never proxies or re-hosts episode audio.
Last week in security news: 'Muddled Libra' Uses Oktapus-Related Smishing to Target Outsourcing Firms, Issue with AWS Directory Service EnableRoleAccess, S3 buckets being used in attacks on npm packages, and more!
Links:
- This collection of best practices for managing root users at scale in AWS is worth a read
- 'Muddled Libra' Uses Oktapus-Related Smishing to Target Outsourcing Firms.
- 1Health is this week's winner of the S3 Bucket Negligence Award
- Barracuda advises customers to rip the entire device out, throw it away, and replace it entirely.
- S3 buckets being used in attacks on npm packages
- Issue with AWS Directory Service EnableRoleAccess
- Tool of the week: xeol is an end-of-life package scanner.
best practices
cloudyali.ioS3 Bucket Negligence Award
ftc.govrip the entire device out
techmeme.comS3 buckets being used in attacks on npm packages
theregister.comIssue with AWS Directory Service EnableRoleAccess
aws.amazon.comxeol
github.com