AWS Security Hub now performs active network reachability testing on your cloud resources and adds impact analysis to exposure findings. Network Scanning is an opt-in feature that probes your resources from outside your accounts to identify open ports and running services, answering two questions: Is this resource reachable from the internet? If reachable, what is running? Impact analysis extends exposure findings by mapping the downstream resources that could be compromised beyond the initially exposed resource, analyzing IAM privilege escalation paths and factoring scope of impact into severity scoring. In this video we walk through enabling Network Scanning, understanding the OCSF findings it produces, and using the potential attack path graph and Impact Assessment tab to prioritize exposures with the greatest downstream reach.
Subscribe to AWS:
Create a free AWS account:
Try AWS for free:
Connect with an expert:
Explore more:
Next steps:
Explore on AWS in Analyst Research:
Discover, deploy, and manage software that runs on AWS:
Join the AWS Partner Network:
Learn more on how Amazon builds and operates software:
Do you have technical AWS questions?
Ask the community of experts on AWS re:Post:
Why AWS?
Amazon Web Services is the world’s most comprehensive and broadly adopted cloud, enabling customers to build anything they can imagine. We offer the greatest choice of innovative cloud capabilities and expertise, on the most extensive global infrastructur
|
Have you ever craved your favorite food ...
In this segment from the August 7th epis...
Start your Cloud Practitioner learning j...
For more details on this topic, visit th...
0:00 Introduction 0:40 Common causes of ...
AWS Security Hub now performs active net...
Dhruvi, a Silicon Validation Engineer ba...
Our continued journey to run frontier AI...
Make moves 💃with Google Gemini. From "Ho...
We’ve all said it: "It's just temporary,...