Today, we’re announcing new enhancements to Amazon GuardDuty Extended Threat Detection with the addition of two attack sequence findings for Amazon Elastic Compute Cloud (Amazon EC2) instances and Amazon Elastic Container Service (Amazon ECS) tasks. These new findings build on the existing Extended Threat Detection capabilities, which already combine sequences involving AWS Identity and Access Management (IAM) credential misuse, unusual Amazon Simple Storage service (Amazon S3) bucket activity, and Amazon Elastic Kubernetes Service (Amazon EKS) cluster compromise. By adding coverage for EC2 instance groups and ECS clusters, this launch expands sequence-level visibility to virtual machine and container environments that support the same application. Together, these capabilities provide a more consistent and unified way to…
Related Posts
Amazon’s AWS forms new group focused on agentic AI
FILE PHOTO: Amazon has formed a new group focused on agentic artificial intelligence. | Photo Credit: Reuters Amazon.com has formed…
Greenwood Genetic Center transforms genomic medicine on AWS | Amazon Web Services
This is a guest post from the Greenwood Genetic Center (GGC), an Amazon Web Services (AWS) customer. The Greenwood Genetic…
Evaluating RAG applications with Amazon Bedrock knowledge base evaluation | Amazon Web Services
Organizations building and deploying AI applications, particularly those using large language models (LLMs) with Retrieval Augmented Generation (RAG) systems, face…