Study Guides/AWS Cybersecurity Notes/Security Hub & Guard Duty: Revision history

From Cramsession
Jump to navigationJump to search
✍️ Verified Author: MflavellClick to view professional profile & credentials

Diff selection: Mark the radio buttons of the revisions to compare and hit enter or the button at the bottom.
Legend: (cur) = difference with latest revision, (prev) = difference with preceding revision, m = minor edit.

25 May 2026

23 May 2026

22 May 2026

  • curprev 01:2101:21, 22 May 2026Mflavell talk contribs 1,398 bytes +565 →‎VPC Flow logs
  • curprev 01:1401:14, 22 May 2026Mflavell talk contribs 833 bytes +833 Created page with " = Amazon Guard Duty = This is a managed threat detection service. :* Uses machine learning :* Can process millions of events, captured by: ::* CloudTrail ::* DNS (Route 53) ::* VPC Flow longs This service learns what is normal in the account to find abnormal actions. :* Can detect connections with unisal sources. :* EG: data been exfiltrated to a remote FTP server This is a ''always on'' service: :* Issues can be found without incurring a performance hit...."