< ciso
brief />
Vendor and Hyperscaler Watch Banner

All news in category “Vendor and Hyperscaler Watch”

5919 articles · page 31 of 296

AWS adds AI toolkit and expanded Automated Security Response

🔒 Today AWS announced four new capabilities for Automated Security Response on AWS (ASR). Customers can use an AI-driven Toolkit to generate custom remediations with built-in safety guardrails. ASR now supports automatic remediation of findings from Amazon Inspector, Amazon GuardDuty, and Amazon Macie, and offers an enhanced web console to centrally configure remediations. New multi-channel notification adapters for Email, Slack, Jira, and ServiceNow include severity filtering and deadline enforcement.
read more →

Elastic Beanstalk adds Active Directory domain join

🔒 AWS Elastic Beanstalk now automatically joins Windows Server instances to an Active Directory domain managed with AWS Directory Service. Previously requiring custom join scripts, the new feature uses configuration options so every instance, including those launched by auto scaling, joins the domain at boot before application deployment. Domain-joined instances can use Windows-integrated authentication, group policy, and access domain resources, and the join process is resilient so failures don't block deployments.
read more →

Brave adds disposable email aliases to improve privacy

📧 Brave 1.94 adds an Email Aliases feature that generates disposable addresses for signups, keeping users' real emails hidden while forwarding messages. The feature requires a free Brave Account and stores primary and alias addresses encrypted; forwarded messages are delivered then deleted from Brave servers within seconds. Up to five aliases are free, with a paid Premium tier planned, and forwarded mail may initially hit spam folders.
read more →

Kinesis delivers streaming data to general S3 buckets

🔔 Amazon Kinesis Data Streams now delivers streaming data directly to general purpose Amazon S3 buckets, simplifying ingestion and delivery without building or managing pipelines. S3 general purpose delivery can reduce data delivery costs by up to 60% compared to self-managed alternatives and supports On Demand Advantage and On Demand Standard capacity modes. The feature requires no additional services, custom applications, or self-managed compute; Kinesis handles scaling, retries, and delivery reliability, and is available in all Regions where Kinesis Data Streams is offered.
read more →

Kinesis adds serverless delivery to S3 Iceberg tables

📣 Amazon Kinesis Data Streams now offers streaming tables, a fully serverless capability that continuously delivers data from Kinesis streams to Amazon S3 Tables in Apache Iceberg format. Streaming tables remove the need for custom Iceberg delivery pipelines, reduce delivery costs by up to 50%, and use intelligent inline compaction to avoid small-file issues and lower downstream query costs by up to 30%. The service handles scaling, retries, compaction, and delivery reliability, and can be configured via console or APIs with usage-based pricing.
read more →

AWS launches EC2 C8gn instances in Paris region

🚀Starting today, Amazon EC2 C8gn instances powered by AWS Graviton4 processors are available in the AWS Europe (Paris) region. These instances deliver up to 30% better compute performance versus Graviton3-based C7gn instances and include 6th generation AWS Nitro Cards with up to 600 Gbps network bandwidth. C8gn supports sizes up to 48xlarge, up to 384 GiB memory, EFA on select sizes, and up to 120 Gbps EBS bandwidth for network-intensive workloads.
read more →

Amazon Bedrock AgentCore Memory adds flexible namespaces

🧭 Amazon Bedrock AgentCore Memory now supports flexible namespace variables that let developers scope long-term memories along custom application dimensions such as organization, tenant, team, or environment. Define up to five keys on a memory resource, reference them in a strategy's namespace template, and supply values at runtime via the CreateEvent API so the service substitutes them during memory extraction. The feature helps multi-tenant and complex-hierarchy applications avoid duplicate strategies and provides fine-grained control over memory organization and access. Flexible namespace variables are available today in all Regions where AgentCore Memory is generally available, at no additional cost.
read more →

AgentCore Memory Adds Fine-Grained Access Control

🔒 Amazon Bedrock’s AgentCore Memory now supports fine-grained access control (FGAC), allowing per-user and per-tenant memory isolation via AgentCore Gateway without custom authorization code. Administrators can configure OAuth (JWT) authentication and attach Cedar policies to restrict access by caller identity, namespace claims, or specific Memory operations. The feature moves access enforcement into the infrastructure using cryptographic identity proof, and is implemented through the managed AgentCore Memory connector exposing 12 Memory operations as Cedar actions.
read more →

AWS Transform added to FedRAMP Class C scope

🔒 AWS Transform is now in scope for FedRAMP Class C in the US East (Ohio) Region, enabling customers to run workloads and build applications subject to those compliance requirements. FedRAMP provides a standardized federal approach to security assessment, authorization, and continuous monitoring. AWS Transform is an agentic migration and modernization service designed to accelerate enterprise migrations and reduce technical debt with less manual handoff and lost context.
read more →

Extend data perimeter to AWS Management Console

🔒 AWS announces general availability of AWS Management Console Private Access, enabling VPCs with no internet connectivity to access supported service consoles via AWS PrivateLink endpoints. This routes authentication, static assets, console-only APIs, and service API calls through interface VPC endpoints, removing the need for an internet gateway or NAT. The feature is available in all AWS commercial Regions for a select set of consoles and integrates with sign-in resource control policies, VPC endpoint policies, and service control policies to enforce identity, resource, and network perimeters.
read more →

Amazon EC2 P6-B300 instances reach more regions

🚀 Amazon EC2 P6-B300 instances are now available in Asia Pacific (Hyderabad) and South America (Sao Paulo), expanding regional availability. These instances offer 8x NVIDIA Blackwell Ultra GPUs with 2.1 TB GPU memory, 6.4 Tbps EFA networking, 300 Gbps ENA throughput, and 4 TB system memory. P6-B300 delivers increased networking, GPU memory, and TFLOPS versus P6-B200, targeting training and deployment of large trillion-parameter FMs and LLMs. The p6-b300.48xlarge size is available in multiple AWS Regions including US West (Oregon) and N. Virginia.
read more →

Amazon EMR on EKS adds job admission controls

🔔 Amazon EMR on EKS now supports job run admission control with configurable concurrency and queue depth limits. You submit jobs to a virtual cluster mapped to an EKS namespace and EMR on EKS manages packaging, scheduling, and execution. Configure maxConcurrentJobRuns and maxInQueueJobRuns to protect shared clusters from overload and noisy-neighbor failures. When the queue is full, StartJobRun returns an HTTP ValidationException; view limits and counts with DescribeVirtualCluster.
read more →

Android 17 adds OS‑wide ECH to shield connections

🔒 Google announced Android 17 will add system‑level support for Encrypted Client Hello (ECH) to obscure domain names and prevent network eavesdropping. The update enables ECH GREASE by default so connections to non‑ECH servers remain indistinguishable, and OkHttp has integrated ECH for third‑party apps. Android 17 also enforces Local Network Protection, enables Certificate Transparency by default, and allows carriers to disable 2G to mitigate downgrade and SMS blaster attacks.
read more →

CloudWatch agent adds native journald log support

📣 The Amazon CloudWatch agent now supports reading systemd journal (journald) logs directly from Linux instances and sending them to Amazon CloudWatch Logs without writing files to disk. This native integration preserves journald structured metadata such as unit, priority, and process information. You can filter by systemd unit, priority, and journal fields, apply regex filters to reduce noise and control costs, and the feature is available in all AWS Commercial and GovCloud(US) regions. Update to the latest CloudWatch agent and add a journald section to your configuration to enable this functionality.
read more →

Amazon Aurora MySQL 3.13 Now Generally Available

🚀 Amazon Aurora MySQL-Compatible Edition 3 now supports MySQL 8.0.45, bringing community fixes and Aurora-specific improvements. You can upgrade during scheduled maintenance windows using automatic minor version upgrades and the AWS Organizations Upgrade Rollout Policy to orchestrate phased upgrades across clusters. Upgrades may be done in-place or via snapshot restore, and this release is supported in all Regions where Aurora MySQL is available.
read more →

SpaceXAI Grok 4.6 on Amazon Bedrock in GovCloud

🚀 Amazon Bedrock in AWS GovCloud (US) now supports SpaceXAI Grok 4.6, a flagship model designed for coding, agentic tasks, and knowledge work. Grok 4.6 provides a 500k context window and configurable reasoning efforts (low, medium, high, xhigh). The model is accessible via the bedrock-runtime endpoint (Responses, Chat Completions, Converse APIs) and bedrock-mantle in GovCloud (US-East), with cross-Region inference routing for scaled access. Review the model card in the Amazon Bedrock User Guide to get started.
read more →

Cloudflare launches BotBase for Operators

🛡️ This post introduces BotBase for Operators, a new Cloudflare dashboard experience that gives bot operators visibility and control over their submissions. Operators can now find the submission form under Protect & Connect → Application Security → BotBase, view submission history and statuses, edit or cancel entries, and filter "My bots." The intake form asks operators to declare what the bot does, how it uses content, and who runs it, aligning with the Content Signals model. Automated checks speed up reviews by validating identifiers, IP lists, reverse DNS, or Web Bot Auth, routing only ambiguous cases to human reviewers. The goal is better transparency and ongoing operator participation in the bot ecosystem.
read more →

Redshift supports 10MiB Kinesis Data Stream records

🔔 Amazon Redshift now accepts Amazon Kinesis Data Streams (KDS) records up to 10 MiB, a tenfold increase from the prior 1 MiB limit. This update lets teams stream much larger payloads directly into Amazon Redshift without splitting records, simplifying ingestion pipelines and enabling new high-volume, large-record use cases. The feature is available now in all commercial AWS regions where Amazon Redshift is offered.
read more →

Redshift adds Agent Toolkit for AI-assisted management

🔧 Amazon Redshift integrates with the Agent Toolkit for AWS to let AI agents like Claude Code, Kiro, and Cursor build, query, troubleshoot, and migrate Redshift data warehouses and data lakes. The integration pairs the AWS MCP (Model Context Protocol) server for authenticated AWS API execution with curated Redshift skills—packages of procedures and reference material—to reduce query errors and streamline common tasks. Skills cover SQL syntax, metadata discovery, data loading, materialized view best practices, function and type guidance, extensions, and end-to-end migration workflows for both provisioned clusters and Serverless workgroups. The capability requires no infrastructure changes, is available at no extra charge in supported Regions, and can be enabled via the aws-data-analytics plugin or discovered at runtime by agents with MCP access.
read more →

Amazon EC2 X8i instances expand to Europe regions

🚀 Amazon EC2 X8i instances are now available in Europe (Milan) and Europe (Spain). These instances use custom Intel Xeon 6 processors exclusive to AWS and are SAP-certified, offering up to 43% higher performance, 1.5x more memory capacity (up to 6TB), and 3.3x more memory bandwidth versus prior generation X2i. X8i is optimized for memory-intensive workloads like SAP HANA, large databases, data analytics, and EDA, and is available in 14 sizes including bare metal options.
read more →