Urgent.News

What's breaking now, across thousands of outlets.

Tech

An $11,400 AWS bill, and CloudWatch Logs was $2,100 of it

I got access to the account on a Tuesday morning The founder had sent over credentials the night before with a message that said roughly: I think we're overpaying but I don't know where Total monthly spend: $11,400 Their product had about 800 active users. For 800 users that number felt wrong immediately First 15 minutes: just looking. Not touching anything. Building a mental map of what's here…

On a Tuesday morning, a founder shared credentials with a reporter, hinting at potential overpayment. The monthly spend totaled $11,400, which seemed excessive for the product's 800 active users. Intrigued, the reporter spent the first 15 minutes merely observing the account, mapping the structure and reasoning behind the costs.

A glaring red flag emerged: CloudWatch Logs accounted for $2,100. This figure was particularly concerning given the size of the account. The reporter delved into the log groups, finding 43 of them without any retention policy, causing logs to accumulate indefinitely. Several of these groups were receiving data from services that no longer existed, further complicating the situation.

One log group stood out: it was ingesting a staggering 180GB of data each month from a service that was operating in debug mode during production. This meant every function call, variable state, and internal operation was being shipped to CloudWatch and stored at full price. This single log group was responsible for $900 of the monthly CloudWatch bill.

The service responsible for this excessive logging had been deployed eight months prior, and debug logging had been left on during the initial development stage, never being turned off. The reporter noted that nobody had taken the time to review the CloudWatch bill specifically, as it was just another component of the gradually increasing total that went unquestioned.

After setting retention policies on all 43 log groups and turning off debug logging on the offending service, the reporter deleted the log groups receiving data from services that were no longer operational. The following month, the CloudWatch bill had dropped to a more reasonable $340, resulting in a savings of $1,760. All this was achieved with just one afternoon of work, and they hadn't even touched the rest of the account yet.

Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at dev.to →

More in Tech

Reading Input in Java

System.in, BufferedReader, and Scanner Every Java beginner eventually asks the same question: "Okay, I can print output — how do I actually read something the user types?" Java gives you a few ways to…

  • System.in.read() reads single byte, returns ASCII value
  • BufferedReader reads entire lines, converts to desired type
  • Scanner simplifies input, handles multiple data types

3 Identity Checks When Staging DNS Records Reach the Wrong Production Zone

TL;DR: Treat a DNS change as a typed publication with three identities: environment, customer, and zone. Resolve all three from the request, compare them with independently loaded expectations, and…

  • Verify environment, customer, and zone identities separately
  • Halt write operation if identities do not align
  • Focus on zone reference, not just record value validity

Why I Created Xeno.JS: Architectural Rigor and Zero Infrastructure Constraints

Introduction How many times have you eagerly started a new TypeScript project, picked the trendy HTTP framework of the month, only to find yourself six months later with a chaotic monolith—hopelessly…

  • Xeno.JS merges .NET/C# architectural patterns with JavaScript's lightweight nature.
  • Implements strict separation of domain logic and infrastructure boundaries.
  • Runtime-agnostic, compatible with various environments without heavy Node.js reliance.

¿Puede una IA descifrar tu cifrado? La amenaza real es otra

La frase "hackeo con IA" se ha vuelto un titular que vende miedo, y al venderlo mezcla tres amenazas que son completamente distintas .

  • AI can't break well-designed encryption math
  • AI accelerates implementation bugs, social engineering, brute force
  • Real threat is quantum computing, not AI

More from Saturday 3 October →