TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Amazon GuardDuty – Continuous Security Monitoring and Threat Detection

103 pointsby moritzplassnigover 7 years ago

7 comments

cddotdotslashover 7 years ago
This is a really good addition. AWS has all this data, so it&#x27;s good to see they&#x27;re putting it to good use. We had just launched a service called CloudSploit Events [1] that does much the same thing, but I think now we&#x27;ll be able to treat this as an additional data source to build out our report data using the machine-learning and vast expertise of AWS.<p>[1] <a href="https:&#x2F;&#x2F;cloudsploit.com&#x2F;events" rel="nofollow">https:&#x2F;&#x2F;cloudsploit.com&#x2F;events</a>
评论 #15805657 未加载
Saasterover 7 years ago
The pricing page <a href="https:&#x2F;&#x2F;aws.amazon.com&#x2F;guardduty&#x2F;pricing&#x2F;" rel="nofollow">https:&#x2F;&#x2F;aws.amazon.com&#x2F;guardduty&#x2F;pricing&#x2F;</a> is a bit confusing.<p>&quot;First 500 GB &#x2F; month, $1.00&quot;. Not bad! &lt;Looks at pricing example&gt;. Oh... $1.00&#x2F;GB :)<p>On the other hand, 250GB of only VPC flow logs sounds really high to me, for the &quot;small&quot; environment example.
kainosnoemaover 7 years ago
Just enabled it for our account (incredibly easy, single-button activation), and by morning we had results showing some minor vulnerabilities in our public subnets that we were able to patch immediately. Highly recommend.
reducesufferingover 7 years ago
Can anyone explain how this works? They&#x27;re scanning logs of what? Suspicious interaction of a service, or suspicious command line fu? You know, for science.
评论 #15807084 未加载
评论 #15805558 未加载
Sephrover 7 years ago
From the title I was hoping for security event tracking&#x2F;categorization for video feeds like Google Cloud Video Intelligence.
评论 #15806169 未加载
A1kmmover 7 years ago
It seems very similar in scope to Amazon Macie - it would be good if they mentioned how the two services are different.
评论 #15805652 未加载
jlgaddisover 7 years ago
Are these flow logs generated for an AWS account even if one doesn&#x27;t use GuardDuty?
评论 #15808649 未加载