by zek on 1/27/23, 8:21 PM with 23 comments
by jeffbee on 1/27/23, 11:14 PM
by olliej on 1/28/23, 2:28 AM
I get that modern tech companies log every movement and interaction a user has with an app, far beyond any amount that is reasonable, but surely at some point you can go “we probably don’t need this”.
It shouldn’t be a matter of “let’s compress the logs”, it should be a “are we even using these logs”.
by mnkmnk on 1/29/23, 7:48 AM
I'm looking forward to the next post.
by orf on 1/28/23, 12:20 AM
If each service has a unique IAM role, which it definitely should do, wouldn’t you be able to track this via a combination of cloudtrail and proper resource tags?
by nrivoli on 1/28/23, 12:53 AM
Also is not clear to me how intercepting calls helped you to figure out the offending services?