AWS Security Blog

Tag: HAQM Kinesis Data Firehose

Automatically updating AWS WAF Rule in real time using HAQM EventBridge

December 4, 2020: This post has been updated to include links to the CloudFormation templates used in the solution. In this post, I demonstrate a method for collecting and sharing threat intelligence between HAQM Web Services (AWS) accounts by using AWS WAF, HAQM Kinesis Data Analytics, and HAQM EventBridge. AWS WAF helps protect against common […]

Trimming AWS WAF logs with HAQM Kinesis Firehose transformations

In an earlier post, Enabling serverless security analytics using AWS WAF full logs, HAQM Athena, and HAQM QuickSight, published on March 28, 2019, the authors showed you how to stream WAF logs with HAQM Kinesis Firehose for visualization using QuickSight. This approach used no filtering of the logs so that you could visualize the full […]

Enabling serverless security analytics using AWS WAF full logs, HAQM Athena, and HAQM QuickSight

September 9, 2021: HAQM Elasticsearch Service has been renamed to HAQM OpenSearch Service. See details. Traditionally, analyzing data logs required you to extract, transform, and load your data before using a number of data warehouse and business intelligence tools to derive business intelligence from that data—on top of maintaining the servers that ran behind these […]