Sign in

Ben Bridts

@benbridts.be
740 followers 215 following 62 posts
PostsRepliesMedia
Reposted by Ben Bridts
fwd:cloudsec @fwdcloudsec.org · 24/09/2026
Videos for fwd:cloudsec Europe 2026 are out! www.youtube.com/playlist?lis...
youtube.com
fwd:cloudsec Europe 2026 - YouTube
Recorded at fwd:cloudsec Europe 2026 September 7 and 8 London, UK
034
Ben Bridts @benbridts.be · 22/09/2026
It's official: I will be speaking at this year's re:Invent conference! Come to COM402 to learn how to use IAM Roles Anywhere, leverage (existing or new) PKI, and get rid of some long-lived credentials registration.awsevents.com/flow/awseven...
Screenshot from the AWS re:Invent Catalog showing the Breakout Session given by Ben Bridts.

It shows:

Session type: Breakout session
Title: Practical PKI for On-Prem Devices with IAM Roles Anywhere (COM402)
Level: 400 - Expert
Abstract:
Secure authentication of your humans and machines is a challenge every organization faces, especially if your proof of identity is not already in AWS. In this session, we'll talk you through multiple ways to set up or use PKI - such as Belgium's eID or a hardware key - to securely access AWS with phishing resistant authentication built using IAM Roles Anywhere. This will include live demos and code samples. By the end of the session we will stop worrying about plain text credential storage because we can use trusted hardware instead.

Features: Community-led, Lecture-style
Date: Wednesday, Dec 2 | 10:00 AM - 11:00 AM PST
Speaker: Ben Bridts, Principal AWS Technologist, Cloudar
Venue: Wynn/Encore
020
Ben Bridts @benbridts.be · 05/09/2026
On my way to @fwdcloudsec.org Europe (my favourite cloud security conference)! Using a bunch of different modes of transport: 🚗, 🚲, 🚆, 🚅, 🚇,🚶🏻(still deciding which ones of those will be my favourite)
010
Ben Bridts @benbridts.be · 14/08/2026
This. If you are using AI but do not want to disclose that, maybe consider if you should be using AI for that task.
030
Ben Bridts @benbridts.be · 10/08/2026
I don't know how recent this is, but it looks like the s3 console stopped returning the actual CreationDate of a bucket, when not using the us-east-1 endpoint (the API already behaved this way, the docs say "[CreationDate] can change when making changes to your bucket") /cc @awscloud.bsky.social
000
Ben Bridts @benbridts.be · 02/07/2026
While it's not called "I prefer speed over automatic rollbacks and validated propagation"-mode, with the improvements that have been deployed in the last few years, it's becoming harder and harder to say that CloudFormation is a slow way to deploy. www.linkedin.com/feed/update/...
linkedin.com
#aws #cdk #cloudformation | Idriss LAOUALI ABDOU, MBA
🚀 Yesterday we shipped 𝐄𝐱𝐩𝐫𝐞𝐬𝐬 𝐦𝐨𝐝𝐞 𝐟𝐨𝐫 𝐀𝐖𝐒 𝐂𝐥𝐨𝐮𝐝𝐅𝐨𝐫𝐦𝐚𝐭𝐢𝐨𝐧 𝐚𝐧𝐝 𝐂𝐃𝐊. Developers and AI agents iterating on infrastructure can now get deployment confirmation in seconds instead of waiting for full res...
010
Ben Bridts @benbridts.be · 24/06/2026
AWS: Here are Lambda MicroVMs for isolated execution of user and AI-generated code @awsteele.com: Let me add SSH and Kubernetes support github.com/aidansteele/...
github.com
GitHub - aidansteele/microvm-fun: A sample repo showing Kubernetes running on a fleet of AWS Lambda MicroVMs, and the ability to SSH into MicroVMs
A sample repo showing Kubernetes running on a fleet of AWS Lambda MicroVMs, and the ability to SSH into MicroVMs - aidansteele/microvm-fun
131
Ben Bridts @benbridts.be · 21/05/2026
Next week (May 27) I'll be in Amsterdam to give a talk at the AWS Summit. I'll be presenting "That's allowed? Using IAM Roles Anywhere without AWS Private CA" in the Community Developer Zone at 11:30. Before and after you can find me at the Cloudar booth (G11). Looking forward to see people there!
Image with the main text "I'm speaking at the AWS Summit Amsterdam 2026"

Next to that is a headshot, with the title 'Ben Bridts - AWS Technologist @ Cloudar"

Image of text: "Cloudar welcomes you at AWS Summit Amsterdam on May 27"
100
Ben Bridts @benbridts.be · 07/04/2026
Java developers and their weird requirements
Screenshot of the blog post "AWS announces general availability of Smithy-Java client framework" with the following text highlighted "The framework allows you to generate clients from models and async patterns that increase cognitive load and maintenance burden for developers building modern Java applications."
150
Reposted by Ben Bridts
fwd:cloudsec @fwdcloudsec.org · 24/03/2026
☁️ 🇪🇺 The third edition of fwd:cloudsec Europe will take place on September 7-8 in London! The CFP has just opened, we're looking forward to your submissions! fwdcloudsec.org/conference/e...
fwdcloudsec.org
fwd:cloudsec Europe 2026 | fwd:cloudsec
fwd:cloudsec is a non-profit conference on cloud security. At this conference you can expect discussions about all the major cloud platforms, both attack and defense research, limitations of security...
012
Ben Bridts @benbridts.be · 24/02/2026
AWS send us an email saying our t3.micro Managed RabbitMQ instance would go out of support in October 2026. The next available supported option is m7g.medium, which is more than 5 times as expensive. I've been on record about my problems with AMQ pricing, but still: 🤯 cc @awscloud.bsky.social
110
Reposted by Ben Bridts
fwd:cloudsec @fwdcloudsec.org · 20/01/2026
Tickets, scholarships, and sponsor info TBA, but interested sponsors can reach us at sponsorship@fwdcloudsec.org fwd:cloudsec EU will be at the Park Plaza Victoria in London, UK on September 7 and 8. The Call for Sponsors is at: fwdcloudsec.org/assets/docs/...
fwdcloudsec.org
122
Reposted by Ben Bridts
fwd:cloudsec @fwdcloudsec.org · 20/01/2026
We've locked in dates and venues for the North American (NA) and European (EU) fwd:cloudsec conferences this year! fwd:cloudsec NA will be in the Seattle, Washington area at the Meydenbauer Center in Bellevue on June 1 and 2. 🧵
1137
Ben Bridts @benbridts.be · 12/12/2025
Probably drowned in all the other announcements (if it was even announced at all), but I'm very happy to read this on the blog post met initial services for AWS's European Sovereign Cloud (aws.amazon.com/blogs/securi...) "Amazon CloudFront is expected to be available in by the end of 2026."
000
Ben Bridts @benbridts.be · 05/12/2025
Had some real Australian food at Outback steakhouse!
A blooming onion
220
Ben Bridts @benbridts.be · 02/12/2025
I'm at #AWSreinvent this week (reach out if you're also here!), so you might see some replies to this with thoughts about keynote announcements (I don't think they count as spoilers)
120
Ben Bridts @benbridts.be · 15/10/2025
If you are attending AWS re:Invent this year and are wondering which sessions you can still reserve a seat for now that the first rush is over; I made you a list of sessions I added to my short list that are not at capacity yet: reinvent-planner.cloud/sessions/sha...
reinvent-planner.cloud
Unofficial AWS re:Invent Session Planner 2025
Easily browse sessions, create a personalized schedule, and get recommendations to make the most of your AWS re:Invent experience.
010
Ben Bridts @benbridts.be · 14/10/2025
Time to start practicing how to say "eusc-de-east-1"
010
Ben Bridts @benbridts.be · 10/10/2025
Usually I'm the one called by work after hours, but today I'm watching my partner deal with "our -80 freezer is not cooling anymore" on a Friday evening. It starts surprisingly similar to "our server is running out of disk space"... but ends with a lot more people with protective gloves in one room
110
Ben Bridts @benbridts.be · 18/09/2025
I'm biased, but +1.
020
Ben Bridts @benbridts.be · 30/08/2025
I'm on my way home from a very inspiring week!
030
Ben Bridts @benbridts.be · 22/08/2025
I just witnessed this perfectly geeky exchange at work: - I'm going to cache 404 errors for 30 seconds - What about 418 errors? - 3 to 4 minutes seems the most common time that people wait - How about we follow ISO 3103 and do 6 minutes exactly?
020
Reposted by Ben Bridts
Konnor Rogers @konnorrogers.com · 18/07/2025
This is art: secretgeek.github.io/html_wysiwyg...
secretgeek.github.io
This page is a truly naked, brutalist html quine.
14218
Ben Bridts @benbridts.be · 26/06/2025
I did a fun thing and gave every Belgian access to my AWS Account (or: playing around with IAM Roles Anywhere) cloudar.be/awsblog/sign...
cloudar.be
Sign in with your eID: Using AWS IAM Roles Anywhere with a SmartCard Reader
Using temporary credentials to access resources, has long been a best practice and is usually straight-forward if the person or machine that is starting the action is already known in AWS (either by u...
061
Reposted by Ben Bridts
fwd:cloudsec @fwdcloudsec.org · 05/06/2025
There's still time to apply for our scholarship which aims to give students or career changers a ticket and travel stipend to attend fwd:cloudsec Europe in Berlin, this September! Details here: fwdcloudsec.org/assets/docs/...
fwdcloudsec.org
004
Ben Bridts @benbridts.be · 05/06/2025
AWS documentation: "just trust me, bro" Jenkins documentation: 🚨🚨🚨
Screenshot of the AWS Documentation. Title: "Step 5. Add CSS support in a Jenkins script", explaining how to use the Jenkins Script Console to execute the command `System.setProperty("hudson.model.DirectoryBrowserSupport.CSP", "")`
Screenshot of the Jenkins documentation, titled "Implementation", that explains that setting "hudson.model.DirectoryBrowserSupport.CSP" to an empty string will cause the "content security policy" header not to be sent at all. The middle of the page has an orange warning triangle next to the text "This is potentially very unsafe and should only be used after reviewing the overall security setup."
030
Reposted by Ben Bridts
fwd:cloudsec @fwdcloudsec.org · 07/05/2025
The CFP for fwd:cloudsec Europe is now open! We're looking for practitioner-focused cloud security content, and we encourage all practitioners to submit, whatever your role or level of experience. The CFP is open until July 11th. Read more: fwdcloudsec.org/conference/e...
fwdcloudsec.org
CFP | EU 2025 | fwd:cloudsec
fwd:cloudsec is a non-profit conference on cloud security. At this conference you can expect discussions about all the major cloud platforms, both attack and defense research, limitations of security...
055
Ben Bridts @benbridts.be · 04/04/2025
Time to reset the "days since an AI-guessed configuration option blew up in someone's face" counter...
010
Ben Bridts @benbridts.be · 03/04/2025
This is a very niche thing, but there is now a (not canonical) place with all the smithy models of all the AWS API supported by the AWS CLI: github.com/aws/api-mode... This does not include all available models, for that we still need @frichetten.com 's repo github.com/Frichetten/a...
github.com
GitHub - aws/api-models-aws
Contribute to aws/api-models-aws development by creating an account on GitHub.
121
Reposted by Ben Bridts
fwd:cloudsec @fwdcloudsec.org · 24/03/2025
We’re thrilled to announce that the second edition of fwd:cloudsec Europe will take place on September 15-16 in Berlin! fwdcloudsec.org/conference/e...
fwdcloudsec.org
fwd:cloudsec Europe 2024 | fwd:cloudsec
fwd:cloudsec is a non-profit conference on cloud security. At this conference you can expect discussions about all the major cloud platforms, both attack and defense research, limitations of security...
276
Ben Bridts @benbridts.be · 17/03/2025
Besides hanging out on the internet, I also play in a symphonic windband. This weekend we (narrowly) placed first in the Flemish Open Windband Championship, securing a ticket to the European Championship for Wind Orchestras. www.vrt.be/vrtnws/nl/20...
vrt.be
Koninklijk HarmonieOrkest Schelle wint Vlaams kampioenschap voor harmonies na ex aequo
030
Reposted by Ben Bridts
Nick Frichette @frichetten.com · 24/02/2025
Messages like this always warm my heart. Cloud security research is all about improving the safety and security of the platform to protect users.
0504
Reposted by Ben Bridts
Werner @wernervogels.bsky.social · 12/02/2025
Load management is all around us - from restaurants handling the lunch rush to cloud systems balancing millions of requests. Mike Haken’s latest Builders' Library article shows how the principles never change: detect early, adapt quickly, degrade gracefully. aws.amazon.com/builders-lib...
2188
Ben Bridts @benbridts.be · 11/02/2025
Three more days to write your Valentine cards!
010
Reposted by Ben Bridts
Colm MacCarthaigh @colmmacc.bsky.social · 07/02/2025
Reading Knuth's "The Art of Computer Programming" fascicles as they came out was incredibly key to discovering the Shuffle Sharding pattern, but I don't think I've ever written about it before ... news.ycombinator.com/item?id=4297...
news.ycombinator.com
Back in 2010 when we were building Amazon Route 53, we had a really big problem ... | Hacker News
04711
Reposted by Ben Bridts
Gunnar Grosch @gunnargrosch.com · 20/01/2025
🚨 Last day to apply for the AWS Community Builders program! 🚨 ✅ Exclusive resources ✅ Mentorship from AWS experts ✅ A global community of passionate builders Don’t miss your chance to level up—applications close tonight, Jan 20! 👉 Apply now: go.aws/3CblHcy #AWSCommunity #AWS
085
Ben Bridts @benbridts.be · 16/01/2025
👀
Screenshot of an AWS dialog modal called "AWS multi-session support". Explaining that "AWS supports logging into multiple root, IAM, or federated roles in different accounts or in the same account in the same browser"
130
Reposted by Ben Bridts
Jeroen Reijn @jeroenreijn.com · 26/12/2024
“How many keys do I need?“ is a post you might have missed after re:invent. It contains insights about criteria and strategies when it comes to using and managing KMS keys. aws.amazon.com/blogs/security/aws-k… #aws #security
aws.amazon.com
AWS KMS: How many keys do I need? | Amazon Web Services
As organizations continue their cloud journeys, effective data security in the cloud is a top priority. Whether it’s protecting customer information, intellectual property, or compliance-mandated…
071
Reposted by Ben Bridts
Liz Fong-Jones (方禮真) @lizthegrey.com · 13/12/2024
There is a huge advantage to this over blockenheimer: you can tell why you blocked them because it'll say what list has them blocked, and removal is automatic if the person unfollows instead of sticking forever (think: journalist who was following but switches to another way of monitoring)
0157
Ben Bridts @benbridts.be · 03/12/2024
Back for our yearly tradition of a re:invent keynote thread. Just like last-year I will only post when I have something extra to add, there's others to follow for play-by-play.
110
Reposted by Ben Bridts
Chris Thoburn @runspired.com · 25/11/2024
One of the small quality-of-life improvement specs I've been closely following for a bit now: httpwg.org/http-extensi... Sharing just cause I'm not sure how many folks have been paying attention to HTTP maybe getting a new verb soon 😍
httpwg.org
The HTTP QUERY Method
This specification defines a new HTTP method, QUERY, as a safe, idempotent request method that can carry request content.
6349
Ben Bridts @benbridts.be · 19/11/2024
I'll be at AWS #reinvent this year, looking forward to seeing a bunch of cloud-friends! LMK if you're there and like to meet up I will also be co-hosting two PeerTalk Meetups (new!), PTM115-R1 & PTM102-R1, so that's also a good way to run into me (register in the app, under PeerTalk > Meetups)!
140
Ben Bridts @benbridts.be · 15/11/2024
Just released, but please do not use this - it does not give you a fully working CloudFront (no ACM) - It creates a bunch of infra in your account (not a service) - "ensures all requests are […] inspected by […] WAF" is misleading - Cache poisoning is possible / easy aws.amazon.com/about-aws/wh...
aws.amazon.com
AWS Application Load Balancer announces CloudFront integration with built-in WAF - AWS
Discover more about what's new at AWS with AWS Application Load Balancer announces CloudFront integration with built-in WAF
031
Ben Bridts @benbridts.be · 15/11/2024
Seeing a "real" PRFAQ is a very interesting look behind the scenes. As far as I know this is the only (AWS) PRFAQ that has been shown publicly (although there have been other examples and at least one amazon.com one shown publicly)
010
Ben Bridts @benbridts.be · 08/11/2024
These are some very cool new features. I've had some good experiences with finch on macos, these should make it possible to use in even more places
040