Home / Companies / Sysdig / Blog / Post Details
Content Deep Dive

Hunting malware with Amazon GuardDuty and Sysdig

Blog post from Sysdig

Post Details
Company
Date Published
Author
Eric Carter
Word Count
1,132
Company Posts That Month
12
Language
English
Hacker News Points
-
Post removed?
No
Summary

Amazon has introduced GuardDuty Malware Protection, a new service designed to identify and manage malware threats across AWS environments by scanning EC2 workloads without requiring agent deployment. This service, announced at AWS Re:inforce, allows cloud security teams to detect and respond to potential malware threats while minimizing operational overhead. It integrates with third-party solutions like Sysdig Secure, which can utilize GuardDuty's findings to enhance security workflows through Amazon EventBridge. Sysdig Secure uses Falco, an open-source threat detection engine, to correlate malware findings with other suspicious activities, offering insights into the impact and presence of malware. This integration allows for automated response actions, such as stopping infected containers, and supports forensics capabilities, including capturing system call activity data. By combining AWS's agentless malware detection with Sysdig's real-time security insights, organizations can better protect their cloud infrastructure from evolving malware threats.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Kubernetes 2 1,066 146 55 +4%
Real-time 1 1,264 334 121 -6%
Serverless 1 691 110 51 -9%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.