A colorful beach scene featuring an overturned green bucket with S🤝P on it, a pink bucket with a smiley face, and a blue shovel. The word upwind appears on a surface beside them, with waves gently lapping the sandy background.

Discover S3 Bucket Communication in Real Time

Denise Ashur December 14, 2023

Discover S3 Bucket Communication in Real Time

We are excited to announce that Upwind recently released a new capability – S3 bucket awareness.

This new capability allows you to easily discover the specific S3 buckets that your assets are talking to in order to better understand attack paths, communication to sensitive data sources and distribution of assets.

s3-awareness-screen--1024x622

Using Upwind’s topology map, you can easily view how your resources talk to S3 buckets in real time and easily identify any suspicious communication or irregular activities that could impact your S3 buckets, including attack paths to sensitive data. 

Use this capability to gain even more context and visibility into your asset communication, track communication between resources and respond to S3 bucket risks and threats in real time.

Contents

Further Reading

Let Me Speak to Your Manager (Account)

Let Me Speak to Your Manager (Account)

The management account is the most privileged account in any AWS Organization. It controls SCPs, creates and deletes member accounts, manages IAM Identity Center, and is itself exempt from SCPs. Getting its 12-digit account ID is the first step in targeting it. The documented way to get it is organizations:DescribeOrganization - but security-conscious environments restrict…
Configuration-Focus

Introducing the new Configurations experience in Upwind

Compliance should not be a fire drill! Ask a security team how audit season goes and you will often hear a version of the same story. Someone pulls a list of cloud accounts. Someone else exports findings into a spreadsheet that is already outdated by the time it is shared. Screenshots get pasted into a…
What You Could Build If IAM Let You

What You Could Build If IAM Let You: New Policies From Undocumented Condition Keys

In the previous post, we mapped 36 condition keys that the IAM engine evaluates but has never documented. The decomposition model, the service-specific resource identifiers, the organizational metadata - all of it sitting in the request context, invisible unless you probe for it. That post was about discovery. This one is about what you can…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS