Lurking in the Documentation Shadows - Why We Built the AWS Security Changes Project
fwd:cloudsec via YouTube
Google AI Professional Certificate - Learn AI Skills That Get You Hired
Our career paths help you become job ready faster
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Discover how undocumented AWS service changes can create hidden security vulnerabilities in this 19-minute conference talk from fwd:cloudsec Europe 2025. Learn about the real-world discovery of "ALBeast," a major architectural flaw in AWS's Application Load Balancer authentication system that exposed thousands of organizations due to undocumented behavior changes rather than insecure code. Explore how this critical finding led to the creation of awssecuritychanges.com, an open-source initiative that tracks and analyzes silent, security-impacting changes in AWS documentation and service behavior. Understand the methodology behind building this threat intelligence resource, examine the surprising patterns it has uncovered, and gain practical guidance on how security practitioners can use it to proactively detect and respond to risks that often hide in plain sight within cloud documentation. Develop a sharper understanding of the hidden risks in the cloud shared responsibility model and learn how to protect your organization using predictive threat intelligence to stay ahead of undocumented changes that could impact your security posture.
Syllabus
Lurking in the (documentation) shadows: Why We Built the AWS Security Changes Project
Taught by
fwd:cloudsec