Please turn JavaScript on
header-image

Sonrai | Enterprise Cloud Security Platform

Is this your feed? Claim it!

Publisher:  Unclaimed!
Message frequency:  0.61 / week

Message History

As November 2025 comes to a close, Sonrai’s latest review of newly released AWS permissions shows a continued expansion of privileges that directly affect observability, anomaly detection, and identity-based access. This month’s updates center on Amazon Managed Service for Prometheus and AWS Security Token Service, introducing new ways to alter or disable logging pipelines, w...

Read full story

Tl;DR

  • Cloud networking is a fragile, high-value target – DNS and traffic routing incidents can quickly cascade and disrupt dependent services.
  • Over-privileged IAM identities enable traffic hijacking – Permissions across Route53, API Gateway, ELB, CloudFront, and Lightsail can be abused to redirect tr...

Read full story

As October 2025 wraps up, Sonrai’s latest analysis of Google Cloud Platform permissions reveals both newly introduced privileged actions and those that have become newly enforceable through the V2 API, meaning organizations can now explic...

Read full story

As October 2025 closes, Sonrai’s latest analysis of new AWS permissions reveals a continued trend: incremental privilege changes with outsized impact. This month’s additions span OpenSearch Ingestion, Aurora DSQL, QuickSight, Parallel Computing Service, ARC Region Switch, and RTB Fabric, touching critical areas of data analytics, compute orchestration, and real-time traffic s...

Read full story

Intro

Permissions are a core building block of Identity and Access Management (IAM) in the cloud. Every major cloud service provider has a robust IAM implementation that controls the behaviour of identities – human or machine users – by granting or denying specific permissions. Google Cloud (GCP) is no exception, with over 12,000 individual permissions that can be granted....

Read full story