AWS Security Best Practices for API Gateway

API Gateway Overview AWS API Gateway enables developers to create, publish, maintain, monitor, and secure APIs. Together with AWS Lambda, API Gateway forms the app-facing part of the AWS serverless infrastructure ...
vuln-project6

OWASP ‘ServerlessGoat’: A Vulnerable Demo Serverless Application

Throughout the years, the concept of creating vulnerable applications for learning and demonstrating application security concepts has become common practice . Years ago, OWASP launched the WebGoat project, which has since become ...
ebook-1

AWS Lambda Security Best-Practices eBook

PureSec releases a security awareness and education guide for organizations developing serverless applications on AWS Lambda As serverless adoption is expected to continue growing in 2019 and reach new audiences, PureSec sees ...

Tracing AWS SDK Calls With No Code Changes for AWS Lambda Security

There is a lot of buzz around Lambda function monitoring. You can find about a dozen companies that will provide you with very nice tools for debugging, profiling and monitoring of your ...

PureSec Collaborates with Amazon Web Services to Provide Zero-Overhead Application Security for AWS Lambda Customers

The new PureSec protection layer for AWS Lambda is designed to help AWS customers further secure their serverless applications against cyber-attacks with minimal effort and no operational overhead TEL AVIV, Israel, November ...

AWS Security Best Practices: Lambda DoS Mitigation Strategies

Overview How to avoid DoS and design resilient serverless applications is one of the most common topics we hear when discussing AWS Lambda security with organizations that are in the process of ...

AWS Security Best Practices: AWS Lambda Security – Design for Failure

For security experts, the terms “Remote Code Execution” (RCE) or “Arbitrary Code Execution” makes the hairs on the back of their neck stand on end. This is because RCE is among the ...

AWS Lambda Security Quick Guide

In January 2018, the world's first Serverless Security Top 10 guide was published. The guide was an effort lead by PureSec together with industry thought leaders, and covered topics such as AWS ...

AWS Security Best Practices: Config Rules for AWS Lambda Security

AWS Config Overview When it comes to AWS services, in my mind, I generally divide them into two classes. You have the operative services such as Lambda, S3, and the rest of ...