secGene
11.4K posts

secGene
@thatguy9869
technology enthusiasts,infoSec professional, looking forward to CISSP,GIASEC,cloudSecurity speciali... rt's are not endorsement.







✨ Siraj 1.2 is here. Your Ramadan companion: 🕌 20+ calculation methods, auto-selected by country. ⏱️ Match My Masjid: fine-tune each prayer to your local mosque. 📿 Prayer Log: track every salah with a monthly calendar view. 🔒 Lock Screen countdown that stays live. 🔄 Tap to switch between Iftar & next prayer. 🧭 Smoother Qibla compass. 🔢 Arabic numerals across the app. 🚫 No ads. No tracking. Just light. 🌙 #Ramadan #Siraj #iOS











Stop using S3 ACLs in 2026 ❌ Here’s the correct S3 access control workflow 👇 1️⃣ Default setup → Object Ownership: Bucket owner enforced → ACLs: Disabled Result: → Bucket owner owns all objects → One security model → No ACL confusion 2️⃣ Use policies, not ACLs → IAM policies for identities → Bucket policies for access control → Prefix-level permissions → Cross-account access Policies scale. ACLs don’t. 3️⃣ Cross-account access (right way) → Bucket owner enforced → Bucket policy allows other account role → No canonical user IDs → No bucket-owner-full-control unless legacy requires it 4️⃣ When ACLs are unavoidable (rare) Use only: → bucket-owner-full-control → log-delivery-write Never use: → AllUsers → AuthenticatedUsers → WRITE on buckets 5️⃣ Enforce safety with bucket policies → Block public ACLs → Allow only safe canned ACLs → Deny PutObjectAcl if needed 6️⃣ Audit like a pro → Watch CloudTrail: aclRequired = Yes → If you see it often → redesign Golden rule 👇 ACLs are a legacy escape hatch. Policies are the real control plane. Design like it’s 2026.















