Amazon’s new security tool could help prevent big data breaches

(Image credit: Pixabay)

At the big AWS re:Invent 2019 conference, Amazon has revealed a new security tool for customers using its S3 cloud storage service, to help ensure that data put in the cloud, stays in the cloud, and isn’t leaked elsewhere by accident.

The utility, called Access Analyzer, is for S3 (Amazon’s Simple Storage Service) and it monitors access policies to ensure they are working as intended.

Now by default, buckets (the name for a block of S3 storage) are created to be private, but AWS gives users various mechanisms such as Access Control Lists to configure different levels of access if necessary.

The problem is, if these are incorrectly configured in some way, this can give public access to the data, which could obviously very easily be a disaster.

Access Analyzer monitors for these sort of misconfigurations with a view to flagging them up, enabling any such unintended access to be quickly dealt with and closed off.

In fact, in such a case, public access can be blocked with a single click, with the tool detailing the problem and exact policy issue so you can then head over and take the time to fully address the security hole.

For more details on how Access Analyzer works, check out Amazon’s full write-up here.

Amazon Access Analyzer

(Image credit: Amazon)

Human error

Sean Roberts, GM of the cloud business unit at Ensono, a hybrid managed services provider, commented: “Amazon S3 is one of the most popular cloud storage solutions, but because of human error it’s historically been a bit of a security liability.

“Over the last few years, hundreds of well-known organizations have suffered data breaches as a direct result of an incorrect S3 configuration – where buckets have been set to public when they should have been private.

“When sensitive data is unintentionally exposed online, it can damage an organization’s reputation and lead to serious financial implications. In real terms, this sensitive data is often usernames and passwords, compromising not only the business but its customers too. 

“Access Analyzer will be a much welcome addition to S3, and will help businesses all over the world audit their storage for misconfigurations and leaky buckets.”

Via The Register

TOPICS

Darren is a freelancer writing news and features for TechRadar (and occasionally T3) across a broad range of computing topics including CPUs, GPUs, various other hardware, VPNs, antivirus and more. He has written about tech for the best part of three decades, and writes books in his spare time (his debut novel - 'I Know What You Did Last Supper' - was published by Hachette UK in 2013).

Latest in Security
cybersecurity
Chinese government hackers allegedly spent years undetected in foreign phone networks
Data leak
A major Keenetic router data leak could put a million households at risk
Code Skull
Interpol operation arrests 300 suspects linked to African cybercrime rings
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Multiple routers hit by new critical severity remote command injection vulnerability, with no fix in sight
Code Skull
This dangerous new ransomware is hitting Windows, ARM, ESXi systems
An abstract image of a lock against a digital background, denoting cybersecurity.
Critical security flaw in Next.js could spell big trouble for JavaScript users
Latest in News
DeepSeek
Deepseek’s new AI is smarter, faster, cheaper, and a real rival to OpenAI's models
Open AI
OpenAI unveiled image generation for 4o – here's everything you need to know about the ChatGPT upgrade
Apple WWDC 2025 announced
Apple just announced WWDC 2025 starts on June 9, and we'll all be watching the opening event
Hornet swings their weapon in mid air
Hollow Knight: Silksong gets new Steam metadata changes, convincing everyone and their mother that the game is finally releasing this year
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
An aerial view of an Instavolt Superhub for charging electric vehicles
Forget gas stations – EV charging Superhubs are using solar power to solve the most annoying thing about electric motoring