Help us improve the AWS re:Post Knowledge Center by sharing your feedback in a brief survey. Your input can influence how we create and update our content to better support your AWS journey.
All Content tagged with Amazon GuardDuty
threat detection service that continuously monitors your AWS accounts and workloads for malicious activity and delivers detailed security findings for visibility and remediation
Content language: English
Filter content
Select tags to filter
Sort by
Sort by most recent
149 results

AWS OFFICIALUpdated 21 days ago0 votes128 views
This article guides you on how to use Amazon GuardDuty to identify and mitigate cryptocurrency mining threats in your AWS environment. You'll learn about GuardDuty's specialized detection capabilities...
Hi everyone,
I’m trying to troubleshoot an issue involving Guard Duty and Security Hub in an AWS Organizations setup, and I would appreciate any guidance or confirmation of expected behaviour.
Enviro...
3
answers
0
votes
74
views
asked a month ago

AWS OFFICIALUpdated 2 months ago1 votes148 views
This article shows how to use AWS Incident Detection and Response and Sumo Logic to implement an automated incident response process.
We are testing GuardDuty EC2 realtime/malware protection, and so far, test scenarioss like eicar and c2 endpoint are all returning findings as expected - with the scans/snapshots working fine.
We ha...
Accepted AnswerAmazon GuardDuty
1
answers
0
votes
50
views
asked 2 months ago
We're experiencing challenges with S3 malware scanning performance for large files and need guidance on expected scan durations and optimization strategies.
Current Issue:
• Large file uploads (1GB+)...
1
answers
0
votes
313
views
asked 5 months ago
Hi all
I’m attempting to install the GuardDuty Runtime Monitoring agent manually with the following command:
```
aws ssm send-command --document-name "AmazonGuardDuty-ConfigureRuntimeMonitoringSsmP...
2
answers
0
votes
207
views
asked 7 months ago
Hi all
I enabled Amazon GuardDuty across our Organization and launched several EC2 instances from our CIS/STIG-hardened image. The GuardDutyRuntimeMonitoring-do-not-delete SSM association shows Statu...
1
answers
0
votes
122
views
asked 7 months ago
For Amazon Guard Duty - Malware Protection for Amazon S3 in GovCloud:
Do new member accounts of an AWS Organization the free tier offer of 1,000 requests and 1GB free each month for the first 12 month...
2
answers
0
votes
184
views
asked 7 months ago
I have an S3 bucket with object ownership = "object writer" with ACLs enabled. This bucket receives objects via an AWS Transfer Family SFTP front end, with multiple accounts putting/overwriting/delet...
3
answers
0
votes
252
views
asked 7 months ago
How do I enable GuardDuty Malware Protection for S3 for all S3 buckets?
When I try to configure this setting in GuardDuty it only gives me access to enter each s3 bucket manually, I have multiple acc...
1
answers
0
votes
285
views
asked 8 months ago
I'm using this tool: https://calculator.aws/#/createCalculator/guardduty
In order to get a price estimate, it's asking me to "Enter the number of protected vCPU instances per month" in order to get a...
2
answers
0
votes
137
views
asked 8 months ago
I want to know if it's possible to integrate existing services in AWS to report on GuardDuty findings. From what I undertand, OpenSearch can achieve this with dashboards and query tools if I'm not mis...
2
answers
0
votes
192
views
asked 9 months ago