Today, we’re announcing new enhancements to Amazon GuardDuty Extended Threat Detection with the addition of two attack sequence findings for Amazon Elastic Compute Cloud (Amazon EC2) instances and Amazon Elastic Container Service (Amazon ECS) tasks. These new findings build on the existing Extended Threat Detection capabilities, which already combine sequences involving AWS Identity and Access Management (IAM) credential misuse, unusual Amazon Simple Storage service (Amazon S3) bucket activity, and Amazon Elastic Kubernetes Service (Amazon EKS) cluster compromise. By adding coverage for EC2 instance groups and ECS clusters, this launch expands sequence-level visibility to virtual machine and container environments that support the same application. Together, these capabilities provide a more consistent and unified way to…
Related Posts
How Qualtrics built Socrates: An AI platform powered by Amazon SageMaker and Amazon Bedrock | Amazon Web Services
This post is co-authored by Jay Kshirsagar and Ronald Quan from Qualtrics. The content and opinions in this post are…
CEO of Amazon Web Services, Adam Selipsky, to resign from position
Adam Selipsky, the CEO of AWS, has announced his departure from the company after 14 years to spend more time…
Amazon plans to invest $15 billion in Northern Indiana to build new data center campuses and advance AI innovation
Since 2010, Amazon has invested more than $31.3 billion in Indiana, including infrastructure and compensation to employees, and has created…