Cloud Security Lab a Week (S.L.A.W.)
Cloud Security Lab a Week (S.L.A.W.)
  • 46
  • 5 410
Attach a Forensics Volume and Find the Prize!
Learn how to create an EBS volume from a snapshot and attach it to a forensics analysis (sorta) server.
Переглядів: 31

Відео

Create a (Forensic) Snapshot and Play CSI!
Переглядів 1721 день тому
Today we'll learn about snapshots with a real-world security scenario that combines snapshots, cross-account sharing, and a crime scene investigation.
Simulate an Attacker Mining Crypto with User Data
Переглядів 37Місяць тому
The user-data field isn't only for passing in secrets - it can tell an instance to run commands. Today we'll learn how attackers abuse it.
Explore the Power and Pain of User-Data
Переглядів 16Місяць тому
The user-data field is a powerful tool for automation, but used improperly it can be a major source of risk.
Let's Get Hacked! Public SSH Edition
Переглядів 28Місяць тому
Time to see our hard work in action as we deliberately expose an instance and see what happens.
Experience the Danger of the Mysterious Metadata Service v1
Переглядів 22Місяць тому
Today we learn how IAM roles work with instances, and how an older (and widely used) essential mechanism can be easily exploited.
Hack My Account with an Access Key/AKIA
Переглядів 58Місяць тому
Remember how I said to never use IAM users and give them access keys? Today you'll learn why as you hack one of my accounts (sorta).
Enabling Logs in Session Manager
Переглядів 332 місяці тому
We'll learn a cool way to log activity into S3 using Session Manager
Replace SSH with Session Manager
Переглядів 742 місяці тому
We've been using Session Manger in our labs. Today we'll level it up with logging and command line access.
Keep Private Subnets Private with VPC Endpoints
Переглядів 242 місяці тому
In this lab we will connect to an instance on a totally private subnet, without inbound or outbound Internet access, using a VPC Endpoint.
Run Our First Instance (FINALLY!)
Переглядів 212 місяці тому
We've been at this for over 6 months so I suppose we should actually run something?
Harness the Magic of Security Groups
Переглядів 1033 місяці тому
Learn what makes security groups special with a hands-on build.
Build a VPC with IaC and Maybe TLC
Переглядів 283 місяці тому
Since we deleted our VPC last week, let's recreate it but this time using CloudFormation.
NAT Your Way to Privacy (and Maybe Poverty)
Переглядів 363 місяці тому
This week we'll learn about private subnets and the different options for letting them talk to the Internet, which is kind of annoyingly required a lot.
Building a VPC from Scratch
Переглядів 583 місяці тому
In today's lab we will create a bare-bones VPC piece by piece to learn what you need, what you don't, and how it works.
Permissions Boundaries Made Easy
Переглядів 753 місяці тому
Permissions Boundaries Made Easy
Stage Check: Org and IAM Foundation
Переглядів 393 місяці тому
Stage Check: Org and IAM Foundation
Journey to the Center of the VPC: Getting Started with Cloud Networks
Переглядів 643 місяці тому
Journey to the Center of the VPC: Getting Started with Cloud Networks
Skills Solution: IAM Identity Center
Переглядів 504 місяці тому
Skills Solution: IAM Identity Center
PBAC and ABAC? Write an Intermediate AWS IAM Policy
Переглядів 1325 місяців тому
PBAC and ABAC? Write an Intermediate AWS IAM Policy
Use EventBridge for Security Hub Alerts
Переглядів 2125 місяців тому
Use EventBridge for Security Hub Alerts
The Best Way to Start with AWS Security Hub
Переглядів 2245 місяців тому
The Best Way to Start with AWS Security Hub
Enable GuardDuty the Right Way
Переглядів 1615 місяців тому
Enable GuardDuty the Right Way
Creating Security Team Permissions in IAM Identity Center
Переглядів 1445 місяців тому
Creating Security Team Permissions in IAM Identity Center
Enable Delegated Administrator for Identity Center and CloudTrail
Переглядів 2916 місяців тому
Enable Delegated Administrator for Identity Center and CloudTrail
Buttoning Up the Org
Переглядів 566 місяців тому
Buttoning Up the Org
On the Meaning of Life(cycles), Versions, and Ransomware
Переглядів 596 місяців тому
On the Meaning of Life(cycles), Versions, and Ransomware
Stage Check 2: Org Foundation
Переглядів 517 місяців тому
Stage Check 2: Org Foundation
NotWhat?!? Lock Out Regions with a Double Negative of an SCP
Переглядів 697 місяців тому
NotWhat?!? Lock Out Regions with a Double Negative of an SCP
OUs, SCPs, and a Root User Account Recovery
Переглядів 717 місяців тому
OUs, SCPs, and a Root User Account Recovery

КОМЕНТАРІ

  • @ThomasRobey-o6n
    @ThomasRobey-o6n 26 днів тому

    Done. Another great lab.

  • @ThomasRobey-o6n
    @ThomasRobey-o6n 26 днів тому

    Done! Great lab.

  • @ganislp
    @ganislp Місяць тому

    Amazing! Thanks for sharing.

  • @nicollasalcantara6907
    @nicollasalcantara6907 Місяць тому

    Hey there, Rich. I am from Brazil. I'm following you at SLAW (Cloud Security Lab a Week) and I must say, I've never learned as much from someone as I learned from you in just a few weeks. Please keep posting your videos and sharing your knowledge with us. I will definitely be there to accompany you and learn from you. Thank you very much!

  • @maciejmatuszewski6030
    @maciejmatuszewski6030 2 місяці тому

    So I did everything like you, but in AWS the policies did not update. However, in the IAM Identity Center I have those policies displayed for the aws accounts.

  • @agarwallp
    @agarwallp 3 місяці тому

    You are doing a great service Rich..absolutely loving your videos and emails.

  • @Workshopcoaching
    @Workshopcoaching 3 місяці тому

    Can this policy be found in AWS officail documenation?

  • @farzadmf
    @farzadmf 4 місяці тому

    Very nice walkthough; thank you!

  • @shebuildsintheclouds
    @shebuildsintheclouds 4 місяці тому

    Thank you! This was easy to follow.

  • @axum202
    @axum202 5 місяців тому

    Good stuff man , keep it up -- wish there we're more channels like this

  • @axum202
    @axum202 5 місяців тому

    Hey man -- good stuff .. question: "By default all data in S3 is encrypted. When we get to S3 labs you’ll learn more than enough about S3 encryption to make you unpopular at parties. The option on this page allows you to set and use your own private key. This will increase costs and, IMHO, doesn’t really add much security. It also adds friction to handling log files. So let’s turn it off (and if you disagree, please drop me a line or comment on the blog or UA-cam)." --- what 'friction' to log handling?

  • @Eddinho10
    @Eddinho10 5 місяців тому

    My second question is given that its an aws organisation structure, don't you need to explicitly enable trusted access for amazon guard duty? thanks

    • @cloudslaw
      @cloudslaw 5 місяців тому

      Guard Duty will set that up when you enable delegated admin. Trusted access is a bit weird since sometimes you have to do it in Organizations and sometimes in the service console.

  • @Eddinho10
    @Eddinho10 5 місяців тому

    Thank you for this great video. I do have a question. We don't need to create any roles and permissions?

    • @cloudslaw
      @cloudslaw 5 місяців тому

      Nothing new for this lab, but it assumes you have been following my other labs.

  • @GarenMerritt
    @GarenMerritt 5 місяців тому

    Hi Rich! I've been struggling a bit with this lesson. Not on your end but the AWS end. They have refused twice to increase my service quotas. Which I had to request because I was running into an issue with building out my org. AWS is stating, "we want to limit any surprises with large unexpected bills...etc." I don't know how to fix this to continue following along. Any suggestions?

  • @loremipsum685
    @loremipsum685 5 місяців тому

    Just discovering this series. Amazing! Thanks for sharing.

  • @thejmaurelli
    @thejmaurelli 6 місяців тому

    Your handwriting is better than characters in CAPTCHA. Something about motorcycles, sidewalks, maybe a bird.

  • @nobodynate
    @nobodynate 7 місяців тому

    In security speak we call Authorization AuthZ (what you can access) to differentiate it from Authentication AuthN (verify you are who you say you are). The distinction helps provides clarity in communication.

  • @M00nsave445
    @M00nsave445 7 місяців тому

    Nice vids Rich, keep it up!

  • @rashadsuleymanov6258
    @rashadsuleymanov6258 9 місяців тому

    Hi Rich, I can't wait to see your future course :)

  • @Gs0c-20
    @Gs0c-20 10 місяців тому

    For what I've seen '+' under usernames is no longer supported by google. Would it be doable to set up an AWS feature for notifications from the users under our Organization? Thanks for the content

    • @oluwaseunmorafa1658
      @oluwaseunmorafa1658 5 місяців тому

      It still works, I just tested it. You don't have to setup an account with the "+" you simply add "+any random text/number" to your Gmail prefix and it will get delivered.

  • @rashadsuleymanov6258
    @rashadsuleymanov6258 11 місяців тому

    Amazing!!!

  • @soumyaranjandas10
    @soumyaranjandas10 11 місяців тому

    Well described👏

  • @trungkiensmile
    @trungkiensmile 11 місяців тому

    Easy to follow instruction. And I really like the tips you share about how to manage several accounts effectively. Thank you!

    • @cloudslaw
      @cloudslaw 11 місяців тому

      Thanks! Excited to get this out there.

  • @gvrkrishna4857
    @gvrkrishna4857 11 місяців тому

    Discovering your SLAW series on LinkedIn has been a game-changer for me. As a cloud security specialist, I'm constantly seeking ways to stay ahead of the curve in the dynamic world of multi-cloud deployments. Your series provides the perfect platform for me to learn and grow, and I'm incredibly grateful for your insights.

  • @VulnerableU
    @VulnerableU 11 місяців тому

    Yessss! Glad to see you get this live Rich. Excited to see what you build here!