Today we released our new (free) AWS Infrastructure Canarytoken.
It catches attackers in your AWS account by putting tempting assets in their way and alerting you if they get probed.
Extending our old work on fake AWS assets, this makes it even easier to deploy juicy S3 buckets, DynamoDB tables, SSM parameters, SecretsManager secrets, and SQS queues, that attackers will want to browse.
We help you design and build a Terraform module that’s unique to your environment, then you deploy when ready.
It's live on
canarytokens.org. Check out our blog for more, including how to deploy your first AWS infrastructure Canarytoken.
__
¹
blog.thinkst.com/2025/09/int…