< ciso
brief />
Vendor and Hyperscaler Watch Banner

All news in category “Vendor and Hyperscaler Watch”

5909 articles · page 11 of 296

Cloudflare launches Forge open source generator

🚀 Forge is an open source, pluggable generation pipeline from Cloudflare designed to produce SDKs, CLIs, docs, and libraries. It runs in CI, lints changes, and generates preview builds so teams can validate API changes before merging. Forge supports OpenAPI today and is extensible to other input formats and chained generation targets. Cloudflare released Forge under the Apache 2.0 license to let organizations run and customize it freely.
read more →

Cloudflare adds Emscripten Rust target for Workers

🚀 Today Cloudflare launched an experimental preview adding first-class support for the Rust wasm32-unknown-emscripten target in the wasm-bindgen toolchain and Rust Workers. This enables improved native Rust and Tokio-based applications to run on Workers, Node.js, and the web, increasing library compatibility and enabling examples like a Rust-native Minecraft server running in a Durable Object. The preview includes patches and examples, with upstream collaboration across Google, wasm-bindgen, Emscripten, and Tokio maintainers.
read more →

Securing AI Agents at Scale with NVIDIA

🔒 Palo Alto Networks and NVIDIA detail a joint architecture to secure autonomous AI agents by combining NVIDIA’s accelerated compute and secure runtime with Palo Alto Networks’ Prisma AIRS and IDIRA capabilities. The integration places governance and enforcement at the infrastructure layer, using Prisma AIRS AI Gateway on NVIDIA Vera CPUs and Prisma AIRS AI Runtime Security on NVIDIA BlueField DPUs. The design emphasizes continuous identity verification, least-privilege access, data redaction, and deep inspection to prevent unauthorized actions and privilege escalation.
read more →

AWS Backup adds air-gapped vault support for FSx ONTAP

🔒 AWS Backup now supports Amazon FSx for NetApp ONTAP in logically air-gapped vaults, enabling immutable, encrypted backups that can be shared across accounts and Regions. These vaults lock backups by default and support AWS-owned or customer-managed keys for encryption. Administrators can target FSx ONTAP backups to an air-gapped vault via the console, CLI, or SDKs, and share access using AWS RAM or Multi-party approval for secure recovery. Direct restores from the sharing account are supported once available, reducing recovery overhead.
read more →

Amazon DocumentDB adds retryable writes support

🛠️ Amazon DocumentDB (with MongoDB compatibility) now supports retryable writes beginning with engine version 8.0.2. This feature lets supported MongoDB drivers automatically retry certain write operations once on transient errors like network interruptions or primary failovers, improving application resilience. Retryable writes are enabled by default in most drivers and are supported for all write commands except updateMany and deleteMany, as well as for transaction commit and abort commands. The capability is available on instance-based and serverless clusters in all regions where Amazon DocumentDB 8.0 is offered; earlier engine versions must disable retryable writes.
read more →

SageMaker adds Iceberg REST and DocumentDB IAM

🔗 Amazon SageMaker Unified Studio now supports Iceberg REST Catalog (IRC) connections for external Apache Iceberg catalogs and IAM authentication for Amazon DocumentDB. IRC supports Snowflake Open Catalog, Databricks Unity Catalog, and a Generic IRC type, enabling browsing, ETL, and notebook access with OAuth2 or bearer tokens and short-lived S3 credentials. IAM authentication lets DocumentDB 5.0+ clusters with TLS validate connections via AWS STS without storing DB credentials. These capabilities are available now in all Regions where Unified Studio is offered at no extra cost.
read more →

Amazon DocumentDB 8.0.2 Enhances MongoDB Compatibility

🔔 Amazon DocumentDB (MongoDB-compatible) 8.0.2 adds retryable writes, five new aggregation stages, change stream improvements, and query planner optimizations to boost migration compatibility and performance. The release supports automatic retry of insert/update/delete on transient network failures, introduces $setWindowFields, $bucketAuto, $facet, $graphLookup, and correlated $lookup, and enhances change streams to split large events and surface createCollection/createIndex events. Indexing and query execution gains include index-only scans, index scans on $expr, incremental sort, faster count operations, and reIndex support for partial indexes. These features are available in all regions where Amazon DocumentDB is offered.
read more →

Google Cloud launches Z4D storage-optimized instances

🚀 Google Cloud announces GA for the Storage-optimized Z4D machine series across Compute Engine VMs and bare-metal instances. Built on 5th Gen AMD EPYC (Turin) and Titanium SSDs, Z4D delivers up to 84,000 GiB local SSD, up to 384 vCPUs, and 3,072 GiB memory to accelerate IO-intensive workloads by up to 40% over Z3. Z4D supports Hyperdisk variants for scalable network-attached storage and offers bare-metal support for Nutanix Cloud Clusters (NC2) in preview. Select regions have VMs available now; bare-metal is in preview.
read more →

Cloudflare founders outline 2026 vision for the Internet

🌐 Cloudflare marks its 16th anniversary with a founders' letter describing major shifts in the Internet driven by AI. The company highlights a resurgence in web growth since 2025, fueled by new creators using low-code tools and Cloudflare's developer platform. It warns that agent-driven automated traffic, now rising rapidly, could disadvantage small businesses and new entrants unless the ecosystem adapts. Cloudflare says it's introducing measures to reduce crawler load and enable creators to be compensated as agents access their content.
read more →

Anthropic launches Claude Marketplace with 2,000+ tools

🧭 Anthropic has launched the public Claude Marketplace, aggregating plugins, connectors, agents, and partner products in one location. The marketplace already lists more than 2,000 offerings from vendors including Atlassian, Google, Microsoft, Notion, and Salesforce. Companies can also buy Claude-powered agents and services from partners such as CrowdStrike, Snowflake, and consulting firms like Accenture and Deloitte. Developers can publish connectors and plugins using MCP and Agent Skills to reach Claude customers.
read more →

Microsoft pauses KB5002907 after Office license issues

🛑 Microsoft has paused rollout of the KB5002907 Microsoft 365 update after reports it deactivated or removed perpetual Office 2016 and 2019 installs. The optional update, intended for Microsoft 365 Apps >90 days out of date, reportedly installed on some perpetual installs and caused 'Unlicensed Product' states or full removal. Microsoft confirmed the pause and is investigating, advising reactivation or reinstallation where necessary. The company updated the support bulletin and will provide further guidance.
read more →

Unit 42 debunks three common cybersecurity myths

🔍 Unit 42 consultants identify three prevalent cybersecurity misconceptions undermining organizational defenses and prescribe corrective strategies. They warn against indiscriminate tool accumulation, which creates alert fatigue, feature underuse, and operational friction, and advocate auditing and consolidating existing platforms. Smaller organizations are reminded they remain attractive targets and should adopt an Assume Breach mindset. Finally, GRC must be treated as active defense rather than mere compliance, with robust RCM, framework alignment, and dedicated ownership.
read more →

Amazon Transcribe adds customer-managed KMS keys

🔐 Amazon Transcribe now allows encryption of custom vocabularies, custom vocabulary filters, and custom language models at rest using a customer-managed AWS KMS symmetric key that you own and control. Previously these artifacts were encrypted with an AWS-owned key; if you do not provide a key, encryption continues under the AWS-owned key. Using a customer-managed key provides control over key permissions, CloudTrail logging for key usage, and the ability to disable or rotate keys to revoke access. The feature is available in all Regions where Amazon Transcribe is offered.
read more →

Amazon EC2 M8i and M8i‑flex arrive in Germany

🚀 Starting today, Amazon EC2 M8i and M8i‑flex instances are available in the AWS European Sovereign Cloud (Germany). Powered by custom Intel Xeon 6 processors exclusive to AWS, these instances deliver up to 15% better price‑performance and 2.5x higher memory bandwidth versus prior Intel-based generations. M8i offers SAP-certified sizes up to 96xlarge and two bare-metal options, while M8i‑flex provides common sizes from large to 16xlarge for general-purpose workloads.
read more →

AWS launches R8i and R8i‑flex EC2 in Germany

🔔 Amazon EC2 R8i and R8i-flex instances are now available in the AWS European Sovereign Cloud (Germany). Powered by custom Intel Xeon 6 processors exclusive to AWS, these instances deliver up to 15% better price-performance and 2.5x memory bandwidth versus previous Intel-based generations. R8i provides large sizes including 96xlarge and SAP certification, while R8i-flex offers memory‑optimized Flex sizes for common memory-intensive workloads. Purchase options include Savings Plans, On-Demand, and Spot instances.
read more →

AWS launches C8i and C8i‑flex in EU Sovereign Cloud

🚀Starting today, Amazon EC2 C8i and C8i-flex instances are available in the AWS European Sovereign Cloud (Germany) region. Powered by custom Intel Xeon 6 processors exclusive to AWS, they deliver improved price-performance and significantly higher memory bandwidth versus prior Intel-based instances. C8i-flex targets common compute workloads with sizes up to 16xlarge, while C8i offers 13 sizes including bare metal and a new 96xlarge for large memory demands.
read more →

AWS STS VPC endpoints for OIDC discovery

🔒 AWS IAM outbound identity federation now supports VPC endpoints for OIDC discovery, allowing workloads to access OIDC metadata and JWKS verification keys over AWS PrivateLink without traversing the public internet. This enables short-lived JWTs from AWS STS to be verified by external services while keeping traffic inside the AWS network. The feature addresses network security requirements for VPCs with restricted internet access and is available in all commercial, GovCloud (US), and China Regions with standard PrivateLink pricing.
read more →

Google Cloud Storage Intelligence Advisor GA

📣 Google Cloud announces the GA release of Storage Intelligence advisor and expanded storage batch operations to help teams detect anomalies and remediate them at scale. Advisor provides out-of-the-box findings and baselines daily activity to surface spikes, errors, cross-region egress, and growth trends without heavy engineering. Batch operations let you execute large-scale changes (transitions, deletes, retention updates) across millions of objects with serverless execution, dry-run validation, and advanced filters.
read more →

Best practices for customizing Gemini models

🔧 This guide explains Google Cloud's managed Reinforcement Learning Fine-Tuning (RLFT) service for adapting Gemini models using a reward signal you define instead of labeled answers. It covers when to choose RLFT versus supervised fine-tuning (SFT), example use cases (NPC dialogue, structured extraction, moderation, code execution, slide generation), and the practical artifacts you must supply: a dataset and a robust reward function. The service manages infrastructure and model internals while you iterate on reward and validation.
read more →

Memorystore for Valkey 9.1 Boosts QPS and Features

🚀 Memorystore for Valkey 9.1 is now generally available on Google Cloud, delivering up to 3x queries per second at microsecond latencies compared to Memorystore for Redis Cluster. Valkey 9.1 introduces a lock-free multi-queue I/O architecture, a two-phase dynamic thread scaling engine, and several new commands (HGETDEL, MSETEX, HSETEX) plus topology-aware CLUSTERSCAN and database-level ACLs for improved security and observability. The release also expands node sizes and provides a managed migration workflow to simplify moving from self-managed Redis/Valkey to Google Cloud Memorystore.
read more →