< ciso
brief />
Vendor and Hyperscaler Watch Banner

All news in category “Vendor and Hyperscaler Watch”

5935 articles · page 81 of 297

Amazon EKS adds customer-routed control plane egress

🔐 Amazon EKS now supports customer-routed control plane egress, allowing outbound Kubernetes API server traffic to traverse your Amazon VPC. This includes admission webhook callbacks, OpenID Connect (OIDC) provider lookups, and aggregate API server requests. By routing through your VPC you can manage routing, security groups, and egress paths to meet data perimeter and compliance needs. Enable the feature by setting controlPlaneEgressMode to CUSTOMER_ROUTED and enforce it org-wide with the eks:controlPlaneEgressMode IAM condition key.
read more →

AWS releases Spring 2026 SOC reports in OSCAL

🔒 Amazon Web Services has published its Spring 2026 SOC 1 and SOC 2 reports in machine-readable OSCAL (JSON) format alongside the traditional PDFs. The package covers 188 services for the period April 1, 2025 to March 31, 2026 and is available via AWS Artifact. AWS is the first major cloud provider to offer SOC reports in NIST's OSCAL, enabling automation to reduce manual compliance processing.
read more →

Ray Serve LLM on GKE: Major performance gains

🚀 Developers using Ray Serve for LLM inference on Google Kubernetes Engine (GKE) now get significantly better performance thanks to a joint effort with Anyscale. Three architectural changes — HAProxy integration for internal routing, a direct token streaming path, and a v2 Ray executor backend for vLLM — reduce overhead and latency. Benchmarks on A4 VMs with NVIDIA HGX B200 hardware show up to 5x higher throughput and 8x lower latency, while preserving Ray's developer-friendly features.
read more →

World Cup 2026 Scams: Watch for Fake Streams

⚠️ Scammers are exploiting World Cup hype with fake streaming sites, fraudulent betting platforms, and counterfeit merchandise stores that harvest payments and personal data. Many sites demand extensive personal information or up-front payments, sometimes even in cryptocurrency, and use professional-looking pages to trick victims. Fans and bettors risk losing money and having credentials reused across accounts stolen; strong security measures and unique passwords are advised.
read more →

SageMaker AI adds comprehensive inference observability

🔍 Amazon SageMaker AI now provides built-in observability for production generative AI inference, delivering real-time visibility into token performance, GPU health, inference component placement, and autoscaling behavior. The new SageMaker AI Insights dashboard in Amazon CloudWatch surfaces metrics like Time to First Token, inter-token latency, queue depth, and tokens per second alongside infrastructure health, with OpenTelemetry native metrics published automatically. Customers using Grafana can connect via a regional PromQL endpoint and import a pre-configured dashboard template for unified monitoring and faster diagnosis.
read more →

Amazon SNS Adds SMS Support in Seoul Region

📣 Amazon Simple Notification Service (Amazon SNS) now supports sending SMS from the Asia Pacific (Seoul) Region, enabling customers to deliver text messages to subscribers across more than 200 countries and territories. Amazon SNS is a fully managed pub/sub messaging service that delivers messages to endpoints such as AWS Lambda, Amazon SQS, mobile devices, and email. With this update, customers can subscribe phone numbers to SNS topics and broadcast SMS via AWS End User Messaging. Additional details include supported countries and guidance on mobile text messaging with SNS.
read more →

Securing AI Agent Behavior with AgentCore and Check Point

🔒 Check Point and AWS are collaborating to secure enterprise AI agents by integrating Amazon Bedrock AgentCore with Check Point AI Security. This partnership extends AgentCore’s identity, gateway, registry, and policy capabilities with runtime behavioral protections that monitor agent actions across models, tools, data, and applications. The integration enables policy-driven governance, visibility into agent deployments, and prevention of misuse such as prompt injection or unintended data exposure.
read more →

Cloudflare Celebrates 12 Years of Project Galileo

🎉 Project Galileo provides free cybersecurity services to over 3,400 websites belonging to journalists, human rights defenders, and nonprofits across 120 countries. Cloudflare published its first comprehensive report on cyberattacks targeting civil society, released 16 participant case studies, and announced new partners. The findings show civil society faces more frequent and intense attacks, including prolonged DDoS, higher exploitation attempts, and elevated phishing rates. Cloudflare calls for broader, affordable protections and will produce this report annually.
read more →

New PCI Rules Force Runtime Script Controls

🔒 An independent PCI assessor evaluated Reflectiz against the updated PCI DSS requirements and found it effectively supports merchant compliance. Modern checkouts load many third-party scripts, any of which can be turned into skimmers, and PCI DSS v4.0.1 introduces controls to inventory, authorize, and detect tampering of payment-page scripts. The QSA highlighted Reflectiz’s behavior-based detection, agentless deployment, and one-click QSA-ready evidence as key strengths, while SAQ A exemptions remain limited for iframe integrations.
read more →

Amazon GameLift Servers adds container fleet controls

🛠️ Amazon GameLift Servers introduces two container fleet improvements to improve flexibility and inter-container communication for game server deployments. You can now customize Linux capabilities in container group definitions to grant specific permissions such as NET_RAW or SYS_PTRACE, and call the new ListContainersNetworkInfo() server SDK action to discover co-located containers' names, IDs, local IPs, and group types. These features are exposed via the console, AWS CLI, SDK, and CloudFormation and supported in server SDK 5.x for Go, C++, and C#, plus Unreal and Unity plugins, available in all GameLift regions except China.
read more →

RDS for SQL Server raises gp3 volume limits

🔔 Amazon RDS for SQL Server now supports larger General Purpose (gp3) volumes, increasing maximum size to 64 TiB, peak IOPS to 80,000, and throughput to 2,000 MiB/s. These enhancements enable larger SQL Server databases and improved performance for I/O-intensive workloads like OLTP and large-scale analytics on a single volume. Customers can also attach up to three gp3 or io2 volumes per DB instance for total capacity up to 256 TiB, with no changes to base pricing.
read more →

Amazon WorkSpaces Adds Ubuntu 24.04 in China

🖥️ AWS now offers Ubuntu 24.04 LTS bundles for Amazon WorkSpaces Personal in the AWS China (Ningxia) Region operated by NWCD. The new bundles let customers launch Ubuntu WorkSpaces with updated packages, toolchains, and security improvements from Ubuntu 24.04. It also provides a migration path for Amazon Linux 2 WorkSpaces customers seeking extended upstream maintenance and support.
read more →

Google to use IPs for ad personalization in EEA, UK

🔒 Google has notified advertisers it will begin using IP addresses to identify devices for ad measurement and personalization across the EEA, UK and Switzerland on or shortly after August 3, 2026. The change repurposes IPs — already transmitted to route traffic and deliver ads — for purposes that trigger consent requirements under UK and EU law. Google will register for IAB Europe TCF Feature 3 and says it will rely on privacy-enhancing technologies while offering later user choices on its properties. Advertisers remain responsible for obtaining valid consent under Google’s EU User Consent Policy.
read more →

Cloudflare Agents SDK and Flue for production agents

🛠️ Cloudflare describes how the Agents SDK provides durable execution, dynamic code execution, a durable filesystem, and dynamic workflows as platform primitives to run agent harnesses in production. The new Flue framework (1.0 Beta) builds on the Pi harness and targets Cloudflare Durable Objects to offer declarative agent development, integrations with Slack/GitHub/Discord, headless UI hooks, and Durable Streams for reliable checkpointing. Flue uses runFiber(), stash(), onFiberRecovered(), @cloudflare/codemode, and @cloudflare/shell to securely execute LLM-generated code, provide a virtual filesystem, and enable durable, resumable agent turns at low cost.
read more →

Advancing Enterprise Security with AI-Driven Scanning

🛡️ Microsoft Security describes codename MDASH, a multi-model agentic scanning system built to discover, validate, and help remediate software vulnerabilities at enterprise scale. The system orchestrates specialized AI agents in a structured pipeline and integrates findings into Microsoft Defender, GitHub, and Azure DevOps workflows so issues become actionable engineering work. Early use across Windows, Azure, and identity teams uncovered numerous high-severity vulnerabilities before exploitation and helped raise CyberGym benchmark performance to 96.5%. The post reviews deployment lessons, failure modes, and planned improvements like fuzzing integration and broader artifact support.
read more →

Cloud Network Insights: Cross-Cloud Network Observability

🔍 Cloud Network Insights is now generally available as a Google Cloud-native solution, delivered in partnership with Broadcom AppNeta, to provide end-to-end visibility across multi-cloud and hybrid networks. It uses lightweight Monitoring Points and active synthetic probes to measure RTT, packet loss, jitter, and application-level metrics like DNS and page-load times. The service integrates with Cloud Monitoring, Cloud Logging, and supports OpenTelemetry, enabling proactive alerting, SLA validation, and rapid root-cause analysis.
read more →

AWS Glue Interactive Sessions Add Spark Connect

🧭 AWS Glue Interactive Sessions now supports Apache Spark Connect, enabling development and execution of Spark applications from managed notebooks like Amazon SageMaker Unified Studio or IDEs such as Jupyter and VS Code while running on AWS Glue's serverless infrastructure. The thin client architecture decouples client dependencies from the server-side Spark runtime, enabling ad hoc exploration, iterative debugging, and incremental PySpark development. Observability includes real-time Spark UI monitoring, History Server tracking, and session management via the AWS Glue API, CLI, or SDK. This capability is available across multiple AWS regions.
read more →

Microsoft named Leader in Forrester XDR Wave 2026

🛡️ Microsoft has been named a Leader in The Forrester Wave™: Extended Detection and Response Platforms, Q2 2026, earning the top Strategy and Vision scores. The report highlights Microsoft Defender and Microsoft Threat Intelligence for high marks across identity detection, cloud detection, SIEM replacement, threat hunting, and more. Microsoft emphasizes an XDR foundation that unifies signals across identities, endpoints, email, SaaS, and cloud workloads to enable coordinated, AI-assisted attack disruption and faster SOC operations.
read more →

AI-Driven Identity Security: Microsoft Entra Updates

🔒 AI is accelerating cyberattacks, increasing speed and scale across the attack chain while identity remains a primary entry point. Microsoft highlights integrated visibility and response through Microsoft Entra and Microsoft Defender, including a unified identity risk score and an updated Entra ID Protection experience. New features aim to reduce fragmentation, enable least-privilege response roles, and automate policy optimization to help teams prevent, detect, and respond faster.
read more →

AWS HealthOmics adds real-time engine log streaming

📡 AWS HealthOmics now streams workflow engine logs to Amazon CloudWatch in real time, enabling customers to monitor workflow execution progress as it happens. This HIPAA-eligible service helps healthcare and life sciences teams accelerate bioinformatics workflows with immediate access to orchestration events, task scheduling details, import/export activity, and full stack traces on errors. Streamed logs support CloudWatch alarms, dashboards, and integration with observability tooling for faster debugging and iterative development.
read more →