< ciso
brief />
Tag Banner

All news with #amazon bedrock tag

306 articles · page 9 of 16

AWS Cost Explorer Adds Amazon Q Natural-Language Query

🤖 AWS Cost Explorer now integrates Amazon Q generative AI so you can query your AWS cost and usage data using natural language. Suggested prompts and a new 'Ask Question' button let users pose common or custom questions while Cost Explorer automatically updates charts, filters, and groupings to match the query. When Amazon Q uses additional datasets like pricing or anomaly detection, visual outputs appear in an artifacts panel. The conversation remains contextual for follow-up analysis without switching tools.
read more →

Amazon Bedrock Agents: Multi-Agent Security Assessment

🔒 This Unit 42 analysis evaluates Amazon Bedrock Agents' multi-agent collaboration from a red-team perspective. The researchers demonstrate a chain of reconnaissance and exploitation—detecting operating mode, enumerating collaborator agents, delivering attacker-controlled payloads, and triggering tool actions—when Bedrock Guardrails and pre-processing are disabled. The report confirms no vulnerabilities in Bedrock itself and emphasizes mitigations such as Bedrock Guardrails, input validation, scoped agent capabilities, and the principle of least privilege.
read more →

Amazon Bedrock Data Automation Adds Custom Vocabulary

🎙️ Amazon Bedrock Data Automation now supports custom vocabulary through the new Data Automation Library, enabling organizations to supply domain-specific word lists to improve speech recognition and transcription accuracy for audio and video. The capability supports display-form mapping (for example, rendering “electrocardiogram” as “ECG”) and covers 11 languages. It targets sectors such as healthcare, legal, financial services, media, and contact center analytics and is provided at no additional charge.
read more →

Amazon Bedrock Guardrails Adds Cross-Account Safeguards

🔒 Amazon Bedrock Guardrails now supports centralized, organization-wide enforcement through cross-account safeguards, enabling security teams to apply configurable safety controls from a single management account. AWS reports these safeguards can block up to 88% of harmful multimodal content and help filter hallucinated model outputs, removing the need to configure guardrails per account. The capability is available in all supported commercial and GovCloud regions and can be managed via the AWS Console or APIs.
read more →

SageMaker Data Agent adds Japan and Australia CRI support

🔒 SageMaker Data Agent now supports cross-region inference profiles for Japan (JP-CRIS) and Australia (AU-CRIS) via Amazon Bedrock. Inference requests originating in Asia Pacific (Tokyo) and Asia Pacific (Sydney) are processed entirely within their respective geographies, helping customers meet data residency and sovereignty requirements. Data Agent continues to provide conversational data exploration, Python and SQL code generation, troubleshooting, and analytics inside SageMaker Unified Studio Notebooks and the Query Editor, with traffic routed exclusively over the AWS Global Network.
read more →

Amazon Bedrock Adds Structured Outputs to GovCloud Regions

🔒 Amazon Bedrock now supports structured outputs in AWS GovCloud (US) Regions. Structured outputs enables foundation models to produce consistent, schema-compliant, machine-readable responses tailored for government and regulated workloads. This reduces the need for custom validation logic, lowers operational overhead, and minimizes failed requests and retries. The capability is generally available in all commercial and GovCloud regions where Amazon Bedrock is supported.
read more →

Amazon Bedrock AgentCore Evaluations Now Generally Available

🎯 Amazon Bedrock AgentCore Evaluations is now generally available to deliver automated, continuous and on-demand quality assessment for AI agents. The feature provides online evaluation to sample and score live production traces and on-demand evaluation for programmatic tests in CI/CD pipelines and interactive workflows. It includes 13 built-in evaluators covering response quality, safety, task completion and tool usage, plus Ground Truth and customizable LLM- or code-based evaluators.
read more →

Securing Agentic AI in Financial Services: Observability

🔒 This post explains how financial institutions should augment traditional security frameworks with AI-specific controls when deploying agentic AI. It emphasizes two foundational capabilities—comprehensive observability of agent workflows and fine-grained tool access controls—to preserve explainability and accountability. The author presents seven design principles and actionable implementation guidance, referencing SR 11-7 and practical AWS tooling such as Amazon Bedrock AgentCore and monitoring integrations.
read more →

AWS Step Functions Adds 28 New SDK Service Integrations

🤖 AWS Step Functions now supports 28 additional AWS service integrations and over 1,100 new API actions, enabling direct orchestration of a broader set of services without writing custom integration code. New integrations include Amazon Bedrock AgentCore for invoking AI agent runtimes and Amazon S3 Vectors for document ingestion workflows. The update also adds support for AWS Lambda durable execution APIs to enable idempotent durable function invocations and management of durable executions from workflows. These enhancements are generally available in all Regions where Step Functions is offered.
read more →

Palmyra Vision 7B on Amazon Bedrock for Visual AI

🖼️ Amazon Bedrock now offers Palmyra Vision 7B from Writer, a multimodal 7B-parameter model that interprets and generates text from images via the Bedrock API. Trained on PixMo, a dataset of one million high-quality image-text pairs, the model supports visual question answering, handwritten text extraction, chart interpretation, and image-based comprehension for enterprise workflows. It is available in select AWS Regions to simplify deployment of multimodal applications.
read more →

Amazon Bedrock AgentCore adds Chrome policies and CA support

🔒 Amazon now enables Bedrock AgentCore to apply Chrome Enterprise policies to AgentCore Browser and to accept custom root Certificate Authority (CA) certificates for both AgentCore Browser and Code Interpreter. Administrators can leverage 100+ configurable browser policies — such as URL restrictions, disabling password managers, download controls, and kiosk-mode restrictions — to enforce compliance for AI agents. Custom root CA support permits secure TLS connections to internal services and corporate proxies that use enterprise-signed certificates, helping agents operate within strict security environments.
read more →

Amazon Bedrock AgentCore: Managed Session Storage Preview

📦 Amazon Bedrock AgentCore Runtime now offers managed session storage in public preview. When configured, each session receives a persistent directory at your specified mount path so agents can read and write files as usual while the runtime transparently replicates data to durable storage. On stop, data is flushed during graceful shutdown and, when you resume with the same session ID, a new microVM mounts the same storage so source files, installed packages, build artifacts, and git history are preserved. The feature supports standard Linux filesystem operations, provides up to 1 GB per session, retains data for 14 days of idle time, and confines storage communication to a single session for isolation.
read more →

Amazon Bedrock AgentCore Runtime Adds WebRTC Support

🔊 Amazon Bedrock AgentCore Runtime now supports WebRTC for low-latency, bidirectional streaming between clients and agents, enabling real-time audio and video in browser and mobile applications. WebRTC complements existing WebSocket support by providing peer-to-peer, UDP-based media transport optimized for voice agents and other media-intensive experiences. AgentCore Runtime supports managed TURN via Amazon Kinesis Video Streams, third-party providers, or self-hosted TURN, and the capability is available in 14 AWS Regions.
read more →

Amazon Polly adds 10 voices, regions, and streaming

🔊 Amazon Web Services announced general availability of 10 new highly expressive Generative voices in Amazon Polly, covering eight locales including American, British, New Zealand, and Singapore English, plus French, Italian, German, and Swiss German. The Generative engine is now hosted in two additional regions — Europe (London) and Canada (Central) — and introduces a Bidirectional Streaming API. The new streaming capability lets customers send text and receive synthesized audio simultaneously, simplifying low-latency integrations with LLM-based systems for chatbots, game characters, and other real-time speech applications.
read more →

AWS DMS Schema Conversion with GenAI Expands Regions

📢 AWS Database Migration Service (DMS) Schema Conversion with GenAI is now available in nine additional AWS Regions, enabling local processing and helping meet data residency requirements. The feature leverages Amazon Bedrock foundation models — including Claude 3.5 Sonnet v2, Claude 3.7 Sonnet, and Claude Sonnet 4 — to automate schema and code conversion. It converts schemas and code from Oracle, SQL Server, MySQL, PostgreSQL, and Sybase to Amazon Aurora PostgreSQL-Compatible Edition and Amazon RDS for PostgreSQL, reducing manual effort and accelerating migrations. DMS Schema Conversion is available at no additional charge and can be accessed through the AWS Management Console or CLI.
read more →

Amazon Bedrock AgentCore Browser: Enterprise Policies & CA

🔒 Amazon Bedrock AgentCore now lets administrators apply Chrome Enterprise policies to AgentCore Browser and upload custom root CA certificates for both AgentCore Browser and Code Interpreter. These capabilities enable enforcement of organizational controls such as URL restrictions, disabling downloads or password managers, and implementing URL blocklists while agents operate. Custom root CA support allows agents to connect to internal systems and work with corporate TLS interception without certificate errors. The features are available in 14 AWS Regions where AgentCore is offered.
read more →

Amazon Bedrock Adds GLM 5 and Minimax M2.5 Models Now

📢 Amazon Bedrock now supports GLM 5 and Minimax M2.5, expanding its frontier model selection across select AWS Regions. GLM 5 targets complex systems engineering and long‑horizon agentic tasks, offering improved multi‑step reasoning, math (including AIME‑style capabilities), advanced coding, and long context support for sophisticated agents. Minimax M2.5 is agent‑native and optimized for efficient task decomposition, high inference throughput, and token‑efficient decisioning to deliver fast, cost‑sensitive task completion. Both models are available in Bedrock for enterprise and agentic workflows.
read more →

Amazon Bedrock Adds NVIDIA Nemotron 3 Super Model Now

🚀 Amazon Bedrock now supports NVIDIA Nemotron 3 Super, an open hybrid Mixture-of-Experts (MoE) model designed for complex multi-agent and agentic workloads. The model delivers fast, cost-efficient inference for long, multi-step tasks while preserving context, and is released with open weights, datasets, and recipes for customization. Bedrock exposes Nemotron 3 Super via a single, fully managed, serverless API with built-in security controls and compatibility with OpenAI API specifications, and the model is available in select AWS Regions.
read more →

DNS Exfiltration and RCE Risk in AI Code Sandboxes

🔒 Researchers disclosed that Amazon Bedrock AgentCore Code Interpreter's sandbox mode permits outbound DNS queries, enabling attackers to create bidirectional command-and-control channels and exfiltrate data via DNS despite a "no network access" setting. BeyondTrust rated the issue 7.5/10 and recommends migrating critical workloads to VPC mode and using a Route53 DNS Firewall. Administrators should audit IAM roles and inventory active interpreters immediately.
read more →

Amazon Bedrock AgentCore Runtime: Shell Command API

⚙️ Amazon Bedrock AgentCore Runtime now supports InvokeAgentRuntimeCommand, an API that runs shell commands directly inside a running AgentCore Runtime session. The API streams stdout/stderr in real time over HTTP/2 and returns an exit code, removing the need for custom in-container command orchestration. Commands execute in the same container, filesystem, and environment as the agent session and can run concurrently with agent invocations. This capability is available in 14 AWS Regions.
read more →