Working on a proposal for our team to take over the rest of IAM in AWS as no one is following best practices as discussed. Finding generic service roles with no documentation that have Admin rights with the access key in clear text in a variety of Lamba functions. Like, what the fuck people...
cybersecurity
An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!
Community Rules
- Be kind
- Limit promotional activities
- Non-cybersecurity posts should be redirected to other communities within infosec.pub.
Enjoy!
I wish you well, you're not the only one facing this kind of problem lol.
Thanks! It's good to know since I've only ever worked at this Organization in an IT capacity before. Best of luck cleaning up your mess as well!
For me, still working on making a bunch of feature additions to my site/blog. Adding #indieweb capabilities (#indieauth, webmentions, notes) and cleaning up some weird things in my site code. Once finished, I have a bunch of things I want to write about in the #infosec domain.
Finished an object detection CV pipeline for my day job. Tomorrow is extracting data with NLP techniques on texts extracted with ASR algorithms
Fixed some minor annoyances in my git repos and need to basically do one more task for the day. Testing programs is a bitch and I see now why QA became a thing. xD
Writing playbooks to standardise our customer firewall base config to something more secure.