3 links
tagged with all of: aws + guardduty
Click any tag below to further narrow down your results
Links
Organizations can automate the disabling of compromised user accounts in AWS Managed Microsoft Active Directory by utilizing Amazon GuardDuty for threat detection. The article outlines a step-by-step process to set up GuardDuty, configure AWS Systems Manager, and use AWS Step Functions to streamline the response to suspicious activities detected in EC2 instances. This automation minimizes human error and enhances security against potential data breaches.
Organizations can enhance file security by using AWS Transfer Family and Amazon GuardDuty to scan files uploaded via SFTP for malware. This managed solution eliminates the need for manual updates and infrastructure, ensuring that files are safely processed after thorough scanning for threats. The implementation involves AWS Lambda and Step Functions to automate the workflow, along with notifications for both successful and malicious uploads.
The article discusses the creation of an AI agent designed to automate the triage of AWS GuardDuty alerts using tools and structured outputs. It outlines the technologies used, including PydanticAI and Discord integration, and describes the agent's functionality in assessing alerts, retrieving contextual information, and providing structured responses. The author shares insights from testing the agent with various GuardDuty findings, highlighting its ability to classify alerts accurately based on context.