Skip to content

Questions tagged with Threat Detection

Content language: English

Filter questions
Select tags to filter
Sort by
Sort by most recent
Filter Questions by:

Browse through the questions and answers listed below or filter and sort to narrow down your results.

11 results
AWS Community, I am very new to working with AWS so forgive my ignorance. I am working on an app that uses Guard Duty (GD) to scan S3 for malware. In order to test some features for the app, I need to...
2
answers
0
votes
129
views

asked a month ago

Hello, I'm encountering an issue with Amazon Cognito’s advanced security features. When a user receives an Account Takeover notification email and clicks the “This was me” or “This wasn’t me” link (...
3
answers
0
votes
167
views

asked a year ago

We have an EC2 Linux (Ubuntu 22.04) t.2 medium instance running a Node based backend service with one port open (behind our LB and WAF & Shield protection). Recently we noticed intermittent CPU usage ...
1
answers
0
votes
471
views

asked a year ago

Hi all I've configured Cognito to remember devices and allow device auth (DEVICE_SRP_AUTH) once an initial login **with** email MFA has occurred. What I'd now like to do is use adaptive authenticati...
0
answers
0
votes
82
views

asked 2 years ago

Is there any way to enable guard duty's S3 protection for only some buckets? As an example I have a bucket that stores company logos and profile pictures. I don't want all these access events monitor...
2
answers
0
votes
1.8K
views

asked 2 years ago

Per the recommendations from the Security pillar of a Well Architected Review conducted on our accounts, our company enabled Security Hub for a centralized view of security findings and Guard Duty for...
3
answers
0
votes
962
views

asked 3 years ago

In the Windows log, I noticed an error 36874; "An TLS 1.2 connection request was received from a remote client application, but none of the cipher suites supported by the client application are suppor...
1
answers
0
votes
1.2K
views

asked 3 years ago

When I signed up for AWS there was already configurations that were being used that I did not set up at all, I had never used the service before. There was Kubernetes, Lambda, VPC set up and activate...
1
answers
0
votes
502
views

asked 3 years ago

Hi Team, Im aware Guardduty is used for threat detection based on the API calls. Im struck where not all logs are appearing in the Guardduty. I have a control tower setup with organization enabled wh...
2
answers
0
votes
511
views

asked 3 years ago

Our company is considering purchasing a partner threat list for GuardDuty to generate additional findings. What has been others experience with that? Is the default Amazon threat list good enough? ...
1
answers
0
votes
591
views

asked 4 years ago

Hello All, Does anyone experience False Positives with GuardDuty? If yes, what do you do to tune or update false positive findings? What options do customers have? Recently, i've notice a lot o...
1
answers
0
votes
1.6K
views

asked 4 years ago

  • 1
  • Page size
    12 / page