Issue with viewing all AWS VPCs in all regions
Too many unnecessary network connections
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
⚙️ Check out my series on Automating Cybersecurity Metrics | Code.
🔒 Related Stories: Bugs | AWS Security | Secure Code
💻 Free Content on Jobs in Cybersecurity | ✉️ Sign up for the Email List
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
I noticed and accidentally clicked on the link to “see all regions” in the AWS console on the VPC page. This new functionality is interesting.
The only problem is it tries to connect to every AWS region around the world creating unnecessary traffic in logs to unwanted destinations. The traffic should be consolidated and viewable from the current region only.
This is going to be problematic for people monitoring DNS and other security logs.
Please resolve this so it consolidates the traffic in a viewable state from the current region the console visitor is using only.

As you can see this is a lot of pointless and unwanted traffic now in my logs and firewall rules:

I consider this a bug.
Update: Related to that I’m seeing something I never saw before. When I switch accounts in the AWS console, a connection to a region in which I do not operate popped up. Switch accounts also failed to work properly. Not sure if related.
This is the error in developer tools:

And this:

I figured out that the AWS home page now requires us-west-2 and us-west-1. Uh. CloudFront? No? Distribute the content to the region where the user operates? I might write more about distributed network architectures in the future that minimize network connections required to run a product. I think I covered this before but could probably cover it more explicitly.
Follow for updates.
Teri Radichel | © 2nd Sight Lab 2023
About Teri Radichel:
~~~~~~~~~~~~~~~~~~~~
⭐️ Author: Cybersecurity Books
⭐️ Presentations: Presentations by Teri Radichel
⭐️ Recognition: SANS Award, AWS Security Hero, IANS Faculty
⭐️ Certifications: SANS ~ GSE 240
⭐️ Education: BA Business, Master of Software Engineering, Master of Infosec
⭐️ Company: Penetration Tests, Assessments, Phone Consulting ~ 2nd Sight LabNeed Help With Cybersecurity, Cloud, or Application Security?
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
🔒 Request a penetration test or security assessment
🔒 Schedule a consulting call
🔒 Cybersecurity Speaker for PresentationFollow for more stories like this:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
❤️ Sign Up my Medium Email List
❤️ Twitter: @teriradichel
❤️ LinkedIn: https://www.linkedin.com/in/teriradichel
❤️ Mastodon: @teriradichel@infosec.exchange
❤️ Facebook: 2nd Sight Lab
❤️ YouTube: @2ndsightlab
