June 16, 2026
AWS IAM Privilege Escalation: Common Paths and How to Catch Them
Privilege escalation rarely comes from a single admin policy — it hides in benign-looking combinations of permissions. A breakdown of the most common AWS IAM escalation paths and how to detect them before attackers do.
June 16, 2026
AWS IAM Least Privilege: A Practical Guide to Scoping Down Policies
Least privilege is the most repeated advice in AWS security and the least often followed. A practical workflow for scoping down IAM policies — actions, resources, conditions — without grinding your team to a halt.
June 16, 2026
Why Wildcards in AWS IAM Policies Are Dangerous (and How to Fix Them)
Action: *, Resource: *, and Principal: * are the three most dangerous wildcards in AWS IAM. What each one really grants, and how to scope it down safely.
June 16, 2026
Introducing Shieldly: AI-Powered Security Analysis for AWS
We're launching Shieldly — an AI-powered tool that analyzes AWS IAM policies, CloudFormation templates, and resource policies to catch overly-permissive access, privilege escalation paths, and misconfigurations that static tools miss.