< ciso
brief />
Vendor and Hyperscaler Watch Banner

All news in category “Vendor and Hyperscaler Watch

5262 articles · page 159 of 264

Amazon WorkSpaces Secure Browser Adds WebAuthn Redirection

🔒 Amazon WorkSpaces Secure Browser now supports Web Authentication (WebAuthn) redirection, enabling users to authenticate to websites from within remote browser sessions using local FIDO2 security keys, passkeys, and platform authenticators like Windows Hello or Touch ID. This capability works with Chromium‑based local browsers such as Google Chrome 136+ and Microsoft Edge 137+, but not with Safari or Firefox. Administrators must enable WebAuthn redirection in the Secure Browser portal and configure the WebAuthenticationRemoteDesktopAllowedOrigins policy on local browsers to allow secure token forwarding. The feature is available at no additional cost in all supported regions.
read more →

AWS Secrets Manager adds flexible secret sorting options

📌 AWS announced enhanced sorting for AWS Secrets Manager, enabling console and ListSecrets API users to sort secrets by name, last changed date, last accessed date, and creation date. The update expands the previous single-dimension creation-date sort to multiple dimensions, improving secret discovery, management, and operational workflows. The new sorting capabilities are available now in the Secrets Manager console and via the ListSecrets API across all AWS commercial and AWS GovCloud (US) Regions.
read more →

Amazon RDS Adds MySQL 9.5 Innovation Release Preview

🚀 Amazon RDS for MySQL now supports the community MySQL 9.5 Innovation Release in the Amazon RDS Database Preview Environment, enabling customers to evaluate the latest innovation release on managed RDS instances. You can deploy Single‑AZ or Multi‑AZ instances on current‑generation instance classes; preview instances are retained for up to 60 days and snapshots are limited to the Preview Environment. Preview instances are priced the same as production RDS in the US East (Ohio) Region.
read more →

CloudWatch: Org-wide Auto-Telemetry for Six Services

🔔 Amazon CloudWatch now supports organization-wide automatic telemetry configuration for six critical AWS services: AWS CloudTrail Management Events, AWS CloudTrail Data Events, Amazon Route 53 Resource Query Logs, Amazon EKS Control Plane logs, Network Load Balancer access logs, and AWS WAF WebACL logs. Administrators can create enablement rules that automatically apply logging for both existing and new resources using AWS Config service-linked recorders. This simplifies enforcement of consistent monitoring and audit practices at scale while adhering to CloudWatch and AWS Config billing models.
read more →

Microsoft Teams to Enable Messaging Safety by Default

🔒Microsoft will automatically enable key messaging safety features in Teams for tenants still using default settings beginning January 12, 2026. The update enables weaponizable file type protection, malicious URL detection, and a false-positive reporting option; dangerous file types will be blocked and suspicious links labeled. Administrators who previously customized messaging safety will see no change; others should review and save settings in the Teams admin center before the deadline and update helpdesk documentation.
read more →

AWS Transform Adds Hybrid Network Conversion Automation

🔁 AWS Transform now automates network conversion for hybrid data center migrations, removing the need for manual VLAN and IP range mapping across VMware and non‑VMware environments. The service analyzes exported inventories and maps network elements to AWS constructs like VPCs, subnets, route tables, and security groups. It also ingests application mapping outputs such as modelizeIT to generate Infrastructure as Code and provision networking in target Regions.
read more →

Passwd: Google Workspace Password Manager Walkthrough

🔒 Passwd is a Google Workspace–focused password manager that emphasizes practical, business-oriented credential storage and seamless integration with Google Workspace. It uses client-side AES-256 encryption and a zero-knowledge design so only users can decrypt stored secrets, while SOC 2 and GDPR readiness support regulated environments. Administrators gain centralized controls, role-based permissions, audit logs, and scalable deployment options including hosting inside a customer Google Cloud project. Cross-platform access via web, browser extensions, and mobile apps plus autofill, password generation, and activity tracking make it a low-friction choice for teams committed to Google tools.
read more →

Amazon Redshift adds MV data sharing and concurrency

🔁 Amazon Redshift now supports running CREATE MV and REFRESH MV from multiple Redshift data warehouses and lets you create materialized views on shared MVs. The update also enables concurrency scaling for the CREATE MATERIALIZED VIEW DDL, so MV creation can scale when your primary cluster or workgroup is resource-constrained. These capabilities are available immediately in all AWS regions. See the Materialized Views and Data Sharing sections of the documentation for details.
read more →

AWS End User Messaging launches AI Registration Reviewer

🤖 AWS End User Messaging now offers a Generative AI Registration Reviewer (preview) to help customers validate phone number registrations before submitting to mobile carriers. The reviewer checks message samples, opt-in descriptions, declared use-cases, and help/stop texts, providing feedback and suggested corrections to improve completeness and accuracy. Available in all Regions where AWS End User Messaging is offered, the preview aims to reduce carrier rejections and speed the registration process.
read more →

Amazon WorkSpaces Secure Browser Adds Branding Tools

🎨 Amazon WorkSpaces Secure Browser now supports branding customization so administrators can deliver a consistent, branded sign-in and session experience. Admins can upload a favicon, logo, and wallpaper, select color themes, and customize welcome text, browser tab titles, and other copy in all 11 supported languages. The feature lets you change the "Contact Us" link and require acknowledgement of a Terms of Service page; customization meets WCAG AA accessibility and contrast guidelines. It is available at no extra cost in 10 AWS Regions and uses the existing pay-as-you-go pricing model.
read more →

Trend Micro's Digital Twin Enables Full-Scale Simulations

🛡️ In a recent interview Trend Micro COO Kevin Simzer described how a digital twin — a virtual replica built from enterprise telemetry — lets organizations run safe, comprehensive red-team simulations across real-world topologies. The approach enables what-if analyses, testing of security controls and architectural changes without risk to production systems. Simzer also noted additions like agentic capabilities to automate SIEM integration and Trend's plan to train proprietary AI models from its historical threat data.
read more →

AWS Deadline Cloud Adds Direct Job Submission From Monitor

🎬 AWS Deadline Cloud now supports direct job submission from the Deadline Cloud Monitor desktop application, removing the previous requirement to use the CLI for job bundles. This change simplifies workflows for legacy applications, specialized renderers, and custom tools that lack built-in Deadline Cloud plugins or submission scripts. Download Deadline Cloud Monitor version 1.1.7 in the AWS Console to enable the feature and manage jobs end-to-end.
read more →

Oracle Database@AWS Entitlement Sharing Across Accounts

🔁 AWS announced that customers can now share Oracle Database@AWS AWS Marketplace entitlements across accounts within an AWS Organization. Organizations can accept a single Marketplace offer in one account and allocate that entitlement to additional accounts via AWS License Manager or APIs. Recipient accounts can activate shared entitlements and begin consuming services immediately. The feature is available in all Regions where Oracle Database@AWS is offered.
read more →

Amazon Kinesis Video Streams WebRTC Adds IPv6 Support

🔁 Amazon Kinesis Video Streams (Amazon KVS) now supports IPv6 addressing for WebRTC through dual‑stack endpoint support, enabling devices to connect over both IPv4 and IPv6. The change preserves existing IPv4 implementations while providing native IPv6 connectivity and removing the need for address translation equipment. This capability is available in all commercial AWS Regions where Amazon KVS is offered, except Asia Pacific (Singapore) and China (Beijing, operated by Sinnet). Refer to the Amazon KVS Developer Guide for implementation details.
read more →

Amazon ECS Service Connect Supports Envoy Access Logs

🔍 Amazon Elastic Container Service (Amazon ECS) Service Connect now supports Envoy access logs, delivering per-request telemetry for deeper observability and compliance. Access logs are emitted to STDOUT and flow through existing ECS log pipelines, with query strings redacted by default to protect sensitive data. You can enable logging by updating the ServiceConnectConfiguration via the Console, API, SDK, CLI, or CloudFormation. This capability supports HTTP, HTTP/2, gRPC and TCP on Fargate and EC2 in AWS GovCloud (US-West and US-East).
read more →

ECS Service Connect Now Supports Envoy Access Logs

🔍 Amazon Elastic Container Service (ECS) Service Connect now supports Envoy access logs, providing request-level telemetry for end-to-end tracing, debugging, and compliance monitoring. You enable access logging by updating the ServiceConnectConfiguration; query strings are redacted by default to protect sensitive data. Envoy access logs are written to STDOUT alongside application logs and flow through the existing ECS log pipeline without requiring additional infrastructure. The capability supports HTTP, HTTP/2, gRPC, and TCP and is available in AWS GovCloud regions where Service Connect is supported.
read more →

Amazon GameLift Streams Adds Session Performance Stats

📈 Amazon GameLift Streams now exposes real-time session performance stats for individual stream sessions, delivering detailed CPU, memory, GPU, and VRAM metrics via the Web SDK and a console overlay. Developers can inspect active sessions, export session data for post-analysis, and use these insights to choose optimal GPUs and tune application performance. The update also improves session status reasons and API error messaging to make root cause analysis and troubleshooting more actionable. These features are available at no additional cost in all Regions offering GameLift Streams.
read more →

GameLift Streams: Gen6 classes and enhanced autoscaling

🚀 Amazon GameLift Streams introduced Gen6 stream classes and enhanced autoscaling with a warm buffer to improve performance and reduce costs. Seven Gen6 classes, built on EC2 G6 instances with NVIDIA L4 Tensor Core GPUs, offer up to 2x performance versus Gen4 and include pro/ultra for AAA and medium/small for casual titles; gen6n_small is $0.16/hour in us‑east‑2. Enhanced autoscaling adds minimum, maximum, and target‑idle capacity controls so developers can dynamically scale provisioned capacity to optimize utilization and player start time, with Gen6 available in five regions and autoscaling offered across all supported Regions.
read more →

Quantum Readiness Begins Now: Preparing Enterprise Security

🔐 Fortinet warns that "harvest-now, decrypt-later" attacks make long-term confidentiality vulnerable now and urges organizations to begin quantum readiness today. The company identifies four essential capabilities for enterprise-grade quantum-safe solutions: minimal performance impact, mandatory crypto-agility, adherence to standards, and deployment flexibility. Fortinet highlights hardware acceleration (NP7 ASICs) to preserve throughput, a required Hybrid Mode to combine classical and PQC key exchanges (e.g., DH + ML-KEM), NIST-approved PQC algorithms for interoperability, and optional QKD for highest-assurance links.
read more →

Research and Engineering Studio on AWS — 2025.12 Release

🆕 Research and Engineering Studio (RES) on AWS version 2025.12 is now available, introducing tag propagation for CloudFormation resources, enhanced Windows domain configuration options, and a default session scheduling capability. Administrators can disable automatic Windows domain joining to implement custom domain-join logic where required. The release also includes security improvements to help meet NIST 800-223 guidance and fixes a bug that caused some sessions to log out after two minutes when using a custom DNS domain.
read more →