![Mobile Authentication to AWS is Hard - podcast episode cover](https://img.transistor.fm/gYIz0uSsdLEc3gdVh3SOsO4_2wPS21Pj3Skq_rO9rKw/rs:fill:3000:3000:1/q:60/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS9lcGlz/b2RlLzEwMTY1MjAv/MTY2MjU4MjEwNy1h/cnR3b3JrLmpwZw.jpg)
Episode description
Links:
- 1Password frankly got it wrong with their assertion that you shouldn't bother with MFA for 1Password itself.
- Joe Frichette has a handy guide on the ordered steps to take to avoid CloudFront or DNS domain takeovers on AWS
- Over 1,000 iOS apps found exposing hardcoded AWS credentials
- Chris Farris has a great post covering how to handle Incident Response in AWS.
- Announcing new AWS IAM Identity Center APIs to manage users and groups at scale
- How to subscribe to the new Security Hub Announcements topic for Amazon SNS
- This week's tool is an open source dingus that lets you use TouchID on supported Macs to authenticate sudo on macOS.