< ciso
brief />
Vendor and Hyperscaler Watch Banner

All news in category “Vendor and Hyperscaler Watch”

5924 articles · page 55 of 297

Security Awareness Shifts From External to Internal Risk

🔒 External threats still drive security training, but organizations increasingly focus on internal risks arising from everyday workflows, cloud apps, collaboration tools, and AI. The 2025 Fortinet Training Institute report shows rising attention to data security, privacy, and AI-related guidance, and finds practical, role-specific training is needed to reduce accidental exposures. Fortinet highlights integrating awareness, simulation, and assessment to build a resilient workforce.
read more →

Infoblox enters EASM market with DNS-first focus

🔍 Infoblox has launched an External Attack Surface Management (EASM) capability and a Supply Chain Intelligence feature to expand its exposure management suite. The DNS-centric approach discovers internet-facing assets without agents, credentials, or active scanning and highlights DNS-specific risks like dangling CNAMEs. The new capabilities integrate with Infoblox’s existing Digital Risk Protection Services and aim to help security teams continuously identify and prioritize external exposures based on exploitability and business impact.
read more →

Microsoft unveils agentic AI security platform

🛡️ Microsoft revealed Project Perception, MAI-Cyber-1-Flash and several AI security initiatives during a July 27 Security launch preview. Project Perception uses coordinated red, blue and green agents to identify, triage and remediate threats, and will enter Preview on August 3. The company also introduced the MAI-Cyber-1-Flash model integrated into MDASH, plus the FORGE Lab and the External Red Team Alliance to accelerate offensive research and broaden AI safety efforts.
read more →

AWS DataSync Enhanced Mode Adds EFS and FSx Support

🔄 AWS DataSync Enhanced mode now supports Amazon EFS and Amazon FSx for Lustre as source or destination locations. Enhanced mode provides parallel data processing, removes file count limits, and offers detailed transfer metrics to simplify large-scale migrations and high-performance workloads. This capability is available in all Regions where AWS DataSync is offered.
read more →

AWS DataSync Enhanced Mode Adds HDFS, Azure Blob

🛠️ AWS DataSync Enhanced mode now supports agent-based transfers for HDFS, Microsoft Azure Blob Storage, and self-managed object storage, and agents can be deployed on Microsoft Hyper-V. Using a DataSync agent, customers can move data with Enhanced mode's parallelism, unlimited file counts, and detailed metrics. HDFS support includes multiple NameNode high-availability configurations and Transparent Data Encryption with Kerberos authentication for secure, compliant migrations.
read more →

NVIDIA Leads New Open Secure AI Alliance Initiative

🛡️ NVIDIA has convened nearly 40 technology firms to form the Open Secure AI Alliance, a coalition aimed at building open source security tools for AI, announced on July 27. Members include Adobe, Cisco, Microsoft, CloudStrike, SpaceX, SAP and the Linux Foundation, while notable frontier model developers such as Google, Anthropic and OpenAI are absent. The alliance will focus on finding, fixing and disclosing vulnerabilities, and aims to create an open defense stack for agents, covering identity, isolation, secure model formats and secure coding workflows.
read more →

CREST launches AI module for pentesting accreditation

🛡️ CREST has introduced optional AI-Enabled Penetration Testing requirements as an add-on to its existing Penetration Testing Accreditation Standard. Launched on July 28, the module lets providers that integrate AI undergo independent assessment to demonstrate responsible AI governance to clients and regulators. Applications are open to existing CREST members and accredited service providers seeking extra assurance for AI use.
read more →

Amazon S3 Tables Adds Apache Iceberg V3 Variant

🟦 Amazon S3 Tables now support the Variant data type from the Apache Iceberg Version 3 specification, enabling direct writing of semi-structured data like JSON without a fixed schema. Variant shards data into hidden columns and generates Parquet column statistics to optimize queries through techniques such as file pruning. S3 Tables also handle ongoing maintenance including compaction for Variant columns and the feature is available in multiple global AWS Regions.
read more →

Microsoft unveils multi-model agentic cyber stack

🔐 Microsoft announced Project Perception, an AI-driven service entering public preview on Aug. 3 that uses multiple AI agents to continuously evaluate and update enterprise security posture. The multi-model harness selects the best model for each task to balance quality and cost, and Microsoft also introduced MAI-Cyber-1-Flash, a specialist model trained to find vulnerabilities. Integrated agents perform red-, blue- and green-team playbooks to detect, triage, and remediate threats automatically.
read more →

Amazon Neptune adds tag-based access control

🔒 Amazon Neptune now supports tag-based access control (TBAC) for IAM, enabling the use of AWS resource tags and IAM principal tags as conditions in IAM policies and Service Control Policies to govern data-plane access. TBAC lets administrators restrict neptune-db:* actions to clusters whose tags match principal tags, reducing lateral access risks in shared VPCs and supporting federated identities via SAML or OIDC session tags. The feature is available in all Regions running Neptune and requires engine version 1.2.0.0+ with IAM authentication enabled.
read more →

AWS Glue Data Quality adds Catalog anomaly detection

🛠️ AWS Glue Data Quality now supports anomaly detection for Catalog-based evaluations and can write evaluation results to AWS Glue Data Catalog (GDC) tables. These features apply to both ETL jobs and Catalog evaluations, enabling ML-driven time-series forecasting to surface unexpected changes in table statistics without manual thresholds. Evaluation outcomes, profiling metrics, and anomaly predictions (with confidence bounds) are persisted to GDC tables and can be queried via standard SQL. The capabilities are available in all AWS commercial regions and AWS GovCloud (US).
read more →

AWS Glue Data Quality adds Distribution Analyzer

📊 AWS announced a Distribution Analyzer for AWS Glue Data Quality that produces frequency distribution profiles for datasets. The feature generates histograms for numeric columns and value distributions for categorical, date, and boolean columns, with support for custom bin counts to tune granularity. Distribution statistics integrate with existing DQDL rulesets, are stored in Amazon S3, and are accessible via APIs for querying and visualization.
read more →

AWS Shield Advanced adopts Anti‑DDoS WAF rule group

🛡️ In June 2025 AWS introduced the AWS WAF Anti‑DDoS managed rule group to protect application‑layer (L7) traffic. Starting July 27, 2026, Shield Advanced will add this rule group to eligible web ACLs in Count mode and eventually replace Shield’s existing L7 automatic mitigation by January 1, 2027. The rollout includes a free evaluation period, configurable sensitivities, new Challenge actions, reduced WCU usage, and a dedicated dashboard and metrics for observability.
read more →

Amazon GameLift Streams adds custom resolution controls

🎮 Amazon GameLift Streams introduces Custom Aspect Ratio and Dynamic Resolution to improve streaming across diverse devices and networks. With Custom Aspect Ratio you can set per-session resolutions (320–4096 pixels per dimension, up to a 1080p pixel budget) via the StartStreamSession API or the AWS Console. Dynamic Resolution adapts stream quality automatically as network bandwidth fluctuates and is enabled by default for new stream groups; customers must download the new Web SDK. Both features are available in all Regions where GameLift Streams is offered.
read more →

NVIDIA leads 37-member Open Secure AI Alliance

🔒 NVIDIA and 36 organizations have launched the Open Secure AI Alliance to develop and share open technologies, techniques, and tools for securing software and AI agents. The group spans cloud, security, enterprise software, and AI companies including Microsoft, Cisco, CrowdStrike, Hugging Face, IBM, and the Linux Foundation. The alliance’s scope covers identity, permissions, isolation, guardrails, logs, model formats, scanning, and secure coding workflows. Its first technical contribution is NVIDIA-labs OO Agents (NOOA), an Apache 2.0 research framework to test, trace, audit, and govern agent behavior.
read more →

Amazon EKS adds PrivateLink for OIDC endpoints

🔒 Amazon EKS now supports AWS PrivateLink for the cluster OIDC discovery and JWKS endpoint, allowing access to the OIDC endpoint used by IAM Roles for Service Accounts (IRSA) privately from your VPC without internet egress. Tools such as eksctl, Terraform, or custom token validators can reach the discovery document and JWKS via an interface VPC endpoint for the com.amazonaws..oidc-eks service. This ensures correct DNS resolution when the EKS management VPC endpoint uses private DNS. The feature is available in all Regions where Amazon EKS is offered at standard AWS PrivateLink pricing.
read more →

AWS Security Hub MCP App preview announced

🛡️ The AWS Security Hub MCP App preview introduces a local Model Context Protocol (MCP) server that brings Security Hub exposure findings into Claude Desktop to streamline investigations. The app enables natural-language investigation of top findings, attack and network paths, correlated findings, affected resource configurations, and remediation suggestions. The MCP server runs locally using existing AWS credentials and is read-only. This preview is available at no additional cost in all commercial Regions that support Security Hub.
read more →

SAP and Google Cloud launch BDC Connect for BigQuery

🚀 SAP and Google Cloud announced general availability of SAP Business Data Cloud Connect for BigQuery, enabling zero-copy, bi-directional access between SAP Business Data Cloud and BigQuery. The integration exposes SAP tables, metadata, and business semantics directly in BigQuery and Knowledge Catalog to accelerate analytics and agentic AI while reducing data replication and costs. Early adopters report faster data pipelines and improved operational insights.
read more →

AWS releases CSA Compliance Guide mapping CCM

🛡️ AWS Security Assurance Services published a Cloud Security Alliance (CSA) Compliance Guide for AWS that maps the 17 control domains and 207 control objectives of the Cloud Controls Matrix v4.1 to AWS services and implementation recommendations. The guide helps organizations plan, implement, and evidence controls within their CCM scope, including those pursuing CSA STAR certification, and aligns CSA’s Shared Security Responsibility Model with the AWS model. It notes AWS-owned controls and available attestations via AWS Artifact, and provides implementation guidance, common pitfalls, and example evidence for customer- and shared-owned controls.
read more →

MediaTailor adds configurable ad timeout and concurrency

🎯 AWS Elemental MediaTailor now lets customers directly control ad decision server (ADS) timeouts and concurrency settings without contacting AWS Support. You can set individual HTTP ad request timeouts, total ad personalization time budgets for live, VOD, and prefetch, and enable parallel ADS requests. Configure these options via the console, AWS CLI, or SDKs using the new AdsPersonalizationTimeouts and AdsPersonalizationConcurrency parameters on playback configurations.
read more →