https://red-team.sh/posts/real-time-ids-using-guardduty/
Real-Time Intrusion Detection Using AWS GuardDuty and Lambda - red-team.sh